VulnSea

CWE-89

CVEs classified under CWE-89, newest first.

810 CVEsRSS

CVE-2022-4997High· 8.6
4d ago

The jet-form-builder-stripe-gateway WordPress plugin before 1.1.0 does not sanitise and escape a payment token before using it in a SQL statement, allowing unauthenticated users to extract arbitrary data from the database, including pass…

The jet-form-builder-stripe-gateway WordPress plugin before 1.1.0 does not sanitise and escape a payment token before using it in a SQL statement, allowing unauthenticated users to extract arbitrary data from the database, including pass…

▾ TwilightEPSS 0.27%via NVD
CVE-2026-95929Medium· 6.3
4d ago

A weakness has been identified in iFlytek astron-agent up to 1.0.7

A weakness has been identified in iFlytek astron-agent up to 1.0.7. Affected is an unknown function of the file console/backend/commons/src/main/resources/mapper/ChatBotMarketMapper.xml of the component getBotList API endpoint. Executing…

▾ SunlitiFlytek · astron-agentEPSS 0.23%via NVD
CVE-2026-95926High· 7.3PoC
4d ago

A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0

A vulnerability was determined in SourceCodester Online Reviewer Management System 1.0. The impacted element is an unknown function of the file /reviewer_0/admins/assessments/pretest/btn_functions.php?action=update. This manipulation of …

▾ MidnightSourceCodester · Online Reviewer Management SystemEPSS 0.26%via NVD
CVE-2026-95927High· 7.3PoC
4d ago

A vulnerability was identified in SourceCodester Online Reviewer Management System 1.0

A vulnerability was identified in SourceCodester Online Reviewer Management System 1.0. This affects an unknown function of the file /reviewer_0/admins/assessments/pretest/exam-delete.php. Such manipulation of the argument test_id leads …

▾ MidnightSourceCodester · Online Reviewer Management SystemEPSS 0.27%via NVD
CVE-2026-95925High· 7.3PoC
4d ago

A vulnerability was found in SourceCodester Online Reviewer Management System 1.0

A vulnerability was found in SourceCodester Online Reviewer Management System 1.0. The affected element is an unknown function of the file /reviewer_0/admins/assessments/databank/btn_functions.php?action=update. The manipulation of the a…

▾ MidnightSourceCodester · Online Reviewer Management SystemEPSS 0.27%via NVD
CVE-2026-96272High· 7.5PoC
4d ago

ClipBucket v5 before 5.5.3-#182 contains a blind SQL injection vulnerability in the photo search endpoint where the query parameter is passed unsanitized into SQL WHERE and ORDER BY clauses

ClipBucket v5 before 5.5.3-#182 contains a blind SQL injection vulnerability in the photo search endpoint where the query parameter is passed unsanitized into SQL WHERE and ORDER BY clauses. Unauthenticated attackers can exploit time-bas…

▾ MidnightMacWarrior · clipbucket-v5EPSS 0.32%via NVD
CVE-2026-95924High· 7.3PoC
4d ago

A vulnerability has been found in SourceCodester Online Reviewer Management System 1.0

A vulnerability has been found in SourceCodester Online Reviewer Management System 1.0. Impacted is an unknown function of the file /reviewer_0/admins/assessments/databank/btn_functions.php?action=add. The manipulation of the argument di…

▾ MidnightSourceCodester · Online Reviewer Management SystemEPSS 0.26%via NVD
CVE-2026-95829Medium· 6.3
4d ago

A vulnerability was identified in TDuckCloud tduck-platform up to 5.3

A vulnerability was identified in TDuckCloud tduck-platform up to 5.3. This vulnerability affects the function PaginationInnerInterceptor.concatOrderBy of the file tduck-api/src/main/java/com/tduck/cloud/api/config/MybatisPlusConfig.java…

▾ SunlitTDuckCloud · tduck-platformEPSS 0.19%via NVD
CVE-2026-95868Medium· 6.3PoC
4d ago

A weakness has been identified in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c

A weakness has been identified in AdithyaYelloju Restaurant-Management-System up to 7f0e7e84255e8fcfd488e83f8f91451bbbff6b9c. Affected by this issue is the function mysqli_query of the file admin/display_menu.php of the component Search …

▾ TwilightAdithyaYelloju · Restaurant-Management-SystemEPSS 0.24%via NVD
CVE-2026-95833Medium· 6.3PoC
4d ago

A weakness has been identified in itsourcecode Leave Management System 1.0

A weakness has been identified in itsourcecode Leave Management System 1.0. Impacted is an unknown function of the file /module/leavetype/index.php. This manipulation of the argument ID causes sql injection. The attack may be initiated r…

▾ Twilightitsourcecode · Leave Management SystemEPSS 0.20%via NVD
CVE-2026-61685High· 7.5
5d ago

ReactPress is a publishing system for React developers

ReactPress is a publishing system for React developers. Prior to version 3.7.0, ReactPress API list endpoints build TypeORM `QueryBuilder` conditions using unsanitized HTTP query parameter names as SQL column identifiers (e.g. `` `articl…

▾ Twilightfecommunity · reactpressEPSS 0.53%via NVD
CVE-2026-95819High· 7.3PoC
5d ago

A vulnerability has been found in anirbandutta9 College-Notes-Gallery up to 8c1cf3d98f30982d069c88ca172612c001eb39f6

A vulnerability has been found in anirbandutta9 College-Notes-Gallery up to 8c1cf3d98f30982d069c88ca172612c001eb39f6. Affected by this vulnerability is an unknown functionality of the file login.php. Such manipulation of the argument use…

▾ Midnightanirbandutta9 · College-Notes-GalleryEPSS 0.41%via NVD
CVE-2026-18137High· 8.1
5d ago

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to execute arbitrary ESQL commands due to improper neutralization of special elements used in an ESQL command.

IBM Financial Transaction Manager (FTM) for RedHat OpenShift could allow a remote attacker to execute arbitrary ESQL commands due to improper neutralization of special elements used in an ESQL command.

▾ TwilightIBM · Financial Transaction Manager (FTM) for RedHat OpenShiftEPSS 0.30%via NVD
CVE-2026-88414Critical· 9.8PoC
5d ago

MCMS 6.1.1 through 6.2.1 contains a SQL injection vulnerability in the PageAction.verify endpoint (GET /ms/mdiy/page/verify.do).

MCMS 6.1.1 through 6.2.1 contains a SQL injection vulnerability in the PageAction.verify endpoint (GET /ms/mdiy/page/verify.do).

▾ AbyssalEPSS 0.19%via NVD
CVE-2026-75682Critical· 9.9
5d ago

Adobe Connect is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in arbitrary code execution in the context of the current user

Adobe Connect is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-privileged attacke…

▾ Midnightadobe · connectEPSS 0.53%via NVD
CVE-2026-82010Critical· 9.9
5d ago

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in arbitrary code execution in the context of the current user

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in arbitrary code execution in the context of the current user. A low-pri…

▾ Midnightadobe · campaignEPSS 0.97%via NVD
CVE-2026-82011Critical· 9.1
5d ago

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in a Security feature bypass

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in a Security feature bypass. A low-privileged attacker could leverage th…

▾ Midnightadobe · campaignEPSS 0.55%via NVD
CVE-2026-82009Critical· 9.1
5d ago

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in arbitrary code execution in the context of the current user

Adobe Campaign Classic (ACC) is affected by an Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability that could result in arbitrary code execution in the context of the current user. An attack…

▾ Midnightadobe · campaignEPSS 0.99%via NVD
CVE-2026-65128High· 8.8
5d ago

NVIDIA Infrastructure Controller for Linux contains a vulnerability where an attacker could cause SQL injection

NVIDIA Infrastructure Controller for Linux contains a vulnerability where an attacker could cause SQL injection. A successful exploit of this vulnerability might lead to code execution, data tampering, denial of service, and information …

▾ TwilightNVIDIA · Infrastructure ControllerEPSS 0.59%via NVD
CVE-2026-12718Critical· 9.8
5d ago

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Karel Electronic Industry and Trade Inc

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Karel Electronic Industry and Trade Inc. KarelIPS allows Blind SQL Injection. This issue affects KarelIPS: through 22092026. NOTE: The…

▾ MidnightKarel Electronic Industry and Trade Inc. · KarelIPSEPSS 0.32%via NVD
CVE-2026-94117High· 7.6
5d ago

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DevItems HashBar – WordPress Notification Bar allows Blind SQL Injection. This issue affects HashBar – WordPress Notification Bar: fro…

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in DevItems HashBar – WordPress Notification Bar allows Blind SQL Injection. This issue affects HashBar – WordPress Notification Bar: fro…

▾ TwilightDevItems · hashbar-wp-notification-barEPSS 0.38%via NVD
CVE-2026-94492Medium· 6.3PoC
5d ago

A security vulnerability has been detected in Yonyou U8cloud 5.x

A security vulnerability has been detected in Yonyou U8cloud 5.x. This vulnerability affects unknown code of the file /u8cloud/openapi/so.saleorder.sendaudit of the component OpenAPI. The manipulation of the argument operator leads to sq…

▾ TwilightYonyou · U8cloudEPSS 0.32%via NVD
CVE-2026-94491High· 7.3PoC
5d ago

A weakness has been identified in Yonyou KSOA 9.0

A weakness has been identified in Yonyou KSOA 9.0. This affects an unknown part of the file /cardcase/search_list.jsp. Executing a manipulation of the argument address can lead to sql injection. It is possible to launch the attack remote…

▾ MidnightYonyou · KSOAEPSS 0.41%via NVD
CVE-2026-88756Medium· 5.3
6d ago

Pagekit CMS <= 1.0.18 allows an unauthenticated attacker to perform SQL injection through the credentials array submitted to the public login endpoint (POST /user/authenticate).

Pagekit CMS <= 1.0.18 allows an unauthenticated attacker to perform SQL injection through the credentials array submitted to the public login endpoint (POST /user/authenticate).

▾ SunlitEPSS 0.22%via NVD
CVE-2026-65980High· 7.9
6d ago

Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts

Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts. Prior to 5.2.3, Chartbrew's ClickHouse protocol in server/sources/plugins/clickhouse/clickhouse.protocol.js ca…

▾ Twilightchartbrew · chartbrewEPSS 0.66%via NVD
CVE-2026-61852Medium· 5.8PoC
6d ago

Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts

Chartbrew is an open-source web application that can connect directly to databases and APIs and use the data to create charts. Prior to 5.2.2, Chartbrew's runQuery() implementation in server/modules/ai/orchestrator/tools/runQuery.js inte…

▾ Twilightchartbrew · chartbrewEPSS 0.36%via NVD
CVE-2026-88402Critical· 9.8PoC
6d ago

A SQL injection vulnerability in the checkSQL function of nocobase v2.1.21 allows attackers to access sesntive database information via injecting crafted SQL statements.

A SQL injection vulnerability in the checkSQL function of nocobase v2.1.21 allows attackers to access sesntive database information via injecting crafted SQL statements.

▾ AbyssalEPSS 0.47%via NVD
CVE-2026-94144High· 7.3PoC
6d ago

A flaw has been found in drogonframework drogon up to 1.9.13

A flaw has been found in drogonframework drogon up to 1.9.13. This affects the function makeCriteria in the library orm_lib/src/Criteria.cc of the component ORM. Executing a manipulation of the argument filter can lead to sql injection. …

▾ Midnightdrogonframework · drogonEPSS 0.43%via NVD
CVE-2026-94143High· 7.3PoC
6d ago

A vulnerability was detected in drogonframework drogon up to 1.9.13

A vulnerability was detected in drogonframework drogon up to 1.9.13. Affected by this issue is the function Mapper::orderBy in the library Mapper.h of the component ORM Mapper. Performing a manipulation of the argument sort results in sq…

▾ Midnightdrogonframework · drogonEPSS 0.43%via NVD
CVE-2026-94110High· 7.3PoC
6d ago

A security vulnerability has been detected in QCMS up to 6.0.6

A security vulnerability has been detected in QCMS up to 6.0.6. This issue affects the function self_Tmp in the library Lib/Config/Controllers.php of the component Content Detail Page. Such manipulation of the argument ID leads to sql in…

▾ MidnightEPSS 0.41%via NVD
CWE-89 vulnerabilities (CVEs) — page 3 · VulnSea