Looking for the vulnerability index of Invicti's legacy products?
PHP Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2025-1735 - Vulnerability Database

PHP Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2025-1735

High
Reference: CVE-2025-1735
Title: PHP Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

In PHP versions:8.1. before 8.1.33 8.2. before 8.2.29 8.3. before 8.3.23 8.4. pgsql and pdo_pgsql escaping functions do not check if the underlying quoting functions returned errors. Thiscould cause crashes if Postgres server rejects the string as invalid.