Vulnerabilities > Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

DATE CVE VULNERABILITY TITLE RISK
2025-03-30 CVE-2025-2951 SQL Injection vulnerability in Bluestar Micro Mall 1.0
A vulnerability classified as critical has been found in Bluestar Micro Mall 1.0.
network
low complexity
bluestar CWE-89
critical
9.8
2025-03-28 CVE-2025-2927 SQL Injection vulnerability in Esafenet CDG 5.6.3.154.205
A vulnerability was found in ESAFENET CDG 5.6.3.154.205.
network
low complexity
esafenet CWE-89
critical
9.8
2025-03-28 CVE-2025-30372 SQL Injection vulnerability in Emlog
Emlog is an open source website building system.
network
low complexity
emlog CWE-89
critical
9.8
2025-03-28 CVE-2025-2074 The Advanced Google reCAPTCHA plugin for WordPress is vulnerable to generic SQL Injection via the ‘sSearch’ parameter in all versions up to, and including, 1.29 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
network
high complexity
CWE-89
5.3
2025-03-27 CVE-2025-30365 SQL Injection vulnerability in Wegia
WeGIA is a Web manager for charitable institutions.
network
low complexity
wegia CWE-89
critical
9.8
2025-03-27 CVE-2025-30367 SQL Injection vulnerability in Wegia
WeGIA is a Web manager for charitable institutions.
network
low complexity
wegia CWE-89
critical
9.8
2025-03-27 CVE-2025-22783 SQL Injection vulnerability in Squirrly SEO Plugin BY Squirrly SEO
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in SEO Squirrly SEO Plugin by Squirrly SEO allows SQL Injection.This issue affects SEO Plugin by Squirrly SEO: from n/a through 12.4.03.
network
low complexity
squirrly CWE-89
8.8
2025-03-27 CVE-2025-2831 SQL Injection vulnerability in Mingyuefusu Library Management System
A vulnerability has been found in mingyuefusu ???? tushuguanlixitong ?????? up to d4836f6b49cd0ac79a4021b15ce99ff7229d4694 and classified as critical.
network
low complexity
mingyuefusu CWE-89
critical
9.8
2025-03-23 CVE-2025-2648 SQL Injection vulnerability in PHPgurukul ART Gallery Management System 1.0
A vulnerability classified as critical has been found in PHPGurukul Art Gallery Management System 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8
2025-03-23 CVE-2025-2649 SQL Injection vulnerability in PHPgurukul Doctor Appointment Management System 1.0.0
A vulnerability classified as critical was found in PHPGurukul Doctor Appointment Management System 1.0.
network
low complexity
phpgurukul CWE-89
critical
9.8