Перейти к содержимому
Noroxi

CWE-564 · 10 записей

SQL Injection: Hibernate

CVE этого класса

10 записей

  • CVE-2024-58352
    34Наблюдать

    Landray OA Unauthenticated HQL Injection via wechatLoginHelper.do

    ВысокаяCVSS 8,7Эксплойта нетEPSS 1 %

    shenzhen landray software co., ltd. · landry office automation (oa)2 июл. 2026 г.

  • CVE-2024-48988
    30Наблюдать

    Apache StreamPark: SQL injection vulnerability

    ВысокаяCVSS 7,6Эксплойта нетEPSS 1 %

    apache · streampark22 авг. 2025 г.

  • CVE-2026-23959
    27Наблюдать

    CoreShop Vulnerable to SQL Injection via Admin customer-company-modifier

    СредняяCVSS 6,9Эксплойта нетEPSS 0 %

    coreshop · coreshop21 янв. 2026 г.

  • CVE-2025-0959
    26Наблюдать

    Eventer - WordPress Event & Booking Manager Plugin <= 3.9.9.2 - Authenticated (Subscriber+) SQL Injection via reg_id

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    imithemes · eventer7 мар. 2025 г.

  • CVE-2025-67280
    21Наблюдать

    In TIM BPM Suite/ TIM FLOW through 9.1.2 multiple Hibernate Query Language injection vulnerabilities exist which allow a low privileged user

    СредняяCVSS 5,4Эксплойта нетEPSS 0 %

    tim-solutions · tim flow9 янв. 2026 г.

  • CVE-2026-13337
    20Наблюдать

    CWE-564: SQL Injection: Hibernate vulnerability exists that could allow the injection of a malicious HQL query in the NetBotz database when

    СредняяCVSS 5,1Эксплойта нетEPSS 0 %

    schneider electric · netbotz 5 - 750/7551 сент. 2026 г.

  • CVE-2026-76451
    19Наблюдать

    Cisco Identity Services Engine Certificate Management SQL Injection Vulnerability

    СредняяCVSS 4,9Эксплойта нетEPSS 0 %

    cisco · identity services engine passive identity connector16 сент. 2026 г.

  • CVE-2026-76450
    19Наблюдать

    Cisco Identity Services Engine SQL Injection Vulnerability

    СредняяCVSS 4,9Эксплойта нетEPSS 0 %

    cisco · identity services engine16 сент. 2026 г.

  • CVE-2026-22242
    19Наблюдать

    CoreShop Vulnerable to SQL Injection via Admin Reports

    СредняяCVSS 4,9Эксплойта нетEPSS 0 %

    coreshop · coreshop8 янв. 2026 г.

  • CVE-2025-8052
    4Наблюдать

    HQL Injection vulnerability has been discovered in Opentext Flipper.

    НизкаяCVSS 1,0Эксплойта нетEPSS 0 %

    opentext · flipper20 окт. 2025 г.

Все классы уязвимостей