CVE-2025-8922: code-projects Job Diary admin-inbox.php sql injection
Published Aug 13, 2025
·Updated
A vulnerability was found in code-projects Job Diary 1.0. This affects an unknown part of the file /admin-inbox.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Code-projects Job Diary
Anisha Job Diary=1.0
Event History
Aug 13, 2025
CVE Published
via MITRE·06:32 PM
Data Sourced
via MITRE·06:32 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Sep 18, 57920
Event
via FIRST·02:33 AM
Frequently Asked Questions
1
What is the severity of CVE-2025-8922?
CVE-2025-8922 is categorized as a high severity vulnerability due to its potential for SQL injection.
2
How do I fix CVE-2025-8922?
To fix CVE-2025-8922, sanitize all input data for the ID parameter in /admin-inbox.php to prevent SQL injection.
3
What systems are affected by CVE-2025-8922?
CVE-2025-8922 affects Code-projects Job Diary version 1.0.
4
Can CVE-2025-8922 be exploited remotely?
Yes, CVE-2025-8922 can be exploited remotely by manipulating the ID parameter.
5
What kind of vulnerability is CVE-2025-8922?
CVE-2025-8922 is an SQL injection vulnerability that allows attackers to manipulate database queries.