sql-injection
160 articles with this tag
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
MEDIUM
CRITICAL
MEDIUM
MEDIUM
MEDIUM
HIGH
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
MEDIUM
HIGH
HIGH
HIGH
CRITICAL
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
MEDIUM
CRITICAL
HIGH
MEDIUM
CRITICAL
CRITICAL
MEDIUM
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
MEDIUM
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
CRITICAL
CRITICAL
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
HIGH
NextGen Healthcare Mirth Connect
Vulnérabilité dans Metabase (10 septembre 2026)
5 Million WordPress Sites Affected by SQL Injection Vulnerability in All-in-One WP Migration and Backup WordPress Plugin
Mathspace Data Breach Exposes Over 1 Million People
Sangoma Switchvox Vulnerabilities Exploited in the Wild
Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability
Critical SQL injection vulnerability in Sangoma Switchvox exploited in the wild
Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials
5 Million WordPress Sites Affected by SQL Injection Vulnerability in All-in-One WP Migration and Backup WordPress Plugin
[webapps] Payload CMS 3.72.0 - Blind SQL Injection
[webapps] EasyAppointments 1.5.1 - Blind SQL Injection
[webapps] CubeCart 6.7.4 - SQL injection
[webapps] CubeCart 6.7.4 - SQL
[NEU] [mittel] MariaDB Connectors: Mehrere Schwachstellen
Multiples vulnérabilités dans Metabase (24 août 2026)
They patched their SaaS and left the self-hosted OSS version vulnerable - AppFlowy Authenticated SQL Injection
[NEU] [mittel] Cisco Unified Intelligence Center: Schwachstelle ermöglicht SQL-Injection
Cisco Unified Intelligence Center SQL Injection Vulnerability
NCSC-2026-0304 [1.00] [M/H] ZeroDay Kwetsbaarheid verholpen in GeoTools door OpenGeo
Hackers Exploiting Unpatched GeoServer Zero-Day
[NEU] [hoch] ILIAS: Mehrere Schwachstellen
NCSC-2026-0291 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Campaign Classic
Metabase SQLi exploit grants attackers total access
NCSC-2026-0283 [1.00] [M/H] Kwetsbaarheden in Veeam ONE
[NEU] [hoch] Metabase: Mehrere Schwachstellen
Metabase Patches Vulnerability Exploited as Zero-Day
Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
Metabase SQLi zero-day exploited in customer data-theft attacks
[NEU] [hoch] Cacti: Schwachstelle ermöglicht SQL-Injection
Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access
New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root
Multiples vulnérabilités dans PHP (31 juillet 2026)
[NEU] [hoch] PHP: Mehrere Schwachstellen
NCSC-2026-0273 [1.00] [M/H] Kwetsbaarheden verholpen in Adobe Campaign Classic
[NEU] [mittel] Tanium Endpoint Management: Schwachstelle ermöglicht SQL-Injection
RHSA-2026:43505: Important: mariadb-connector-c security update
[NEU] [hoch] Budibase: Mehrere Schwachstellen
[NEU] [hoch] Oracle MySQL: Mehrere Schwachstellen
CVE-2026-39879 SQL injection in syslog-ng SQL destionation driver
[UPDATE] [hoch] Shibboleth Service Provider: Schwachstelle ermöglicht SQL Injection
Two new high severity WordPress vulnerabilities, patch immediately!
CVE-2026-15043 DBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on text
USN-8536-1: MariaDB vulnerabilities
Threat Actors Achieve Persistence After SQL Injection
[webapps] Tenable Nessus 10.12.1 - SQL Injection
[NEU] [hoch] Ubiquiti UniFi: Mehrere Schwachstellen
Multiples vulnérabilités dans Tenable Nessus (26 juin 2026)
[NEU] [kritisch] Budibase: Schwachstelle ermöglicht SQL-Injection
[NEU] [hoch] Apache Nifi: Mehrere Schwachstellen
Vulnérabilité dans Spring AI (15 juin 2026)
Multiples vulnérabilités dans les produits SAP (09 juin 2026)
USN-8365-1: Dovecot vulnerabilities
[webapps] Drupal Core 10.5.5 - Error-Based SQL Injection
NCSC-2026-0170 [1.00] [M/H] Kwetsbaarheden verholpen in Oracle E-Business Suite componenten
[webapps] MikroORM 7.0.13 - SQL Injection
Drupal PostgreSQL SQL Injection: From SELECT-Only to RCE
Veikleikar í Drupal, Cisco, Ubiquity og LiteSpeed cPanel viðbót
[webapps] OpenCATS 0.9.7.4 - SQL Injection
Drupal bug added to CISA list of known exploited vulnerabilities
Ghost CMS vulnerability exploited in large-scale campaign
700+ education and tech websites hijacked in huge ClickFix malware campaign
CISA orders feds to patch actively exploited Drupal vulnerability
Ghost CMS Vulnerability Exploited to Hack Over 700 Websites
Ghost CMS CVE-2026-26980 Exploited to Hijack 700+ Sites for ClickFix Attacks
Ghost CMS SQL injection flaw exploited in large-scale ClickFix campaign
Drupal Core SQL Injection Bug Actively Exploited, Added to CISA KEV
Keys to the Kingdom: Anonymous SQL Injection in Drupal Core (CVE-2026-9082)
Drupal: Critical SQL injection flaw now targeted in attacks
[UPDATE] [hoch] Exim: Schwachstelle ermöglicht SQL-Injection
USN-8294-1: PostgreSQL vulnerabilities
CVE-2026-9082: Highly Critical SQL Injection Vulnerability in Drupal Core (SA-CORE-2026-004)
Vulnérabilité dans Drupal (21 mai 2026)
Drupal Patches Highly Critical Vulnerability Exposing Websites to Hacking
NCSC-2026-0166 [1.00] [M/H] Kwetsbaarheid verholpen in Drupal core
Highly Critical Drupal Core Flaw Exposes PostgreSQL Sites to RCE Attacks
Drupal admins rushing to patch maximum severity SQL injection vulnerability
[NEU] [hoch] CKAN: Mehrere Schwachstellen
CVE-2026-6638 PostgreSQL REFRESH PUBLICATION allows SQL injection via table name
[NEU] [hoch] PostgreSQL: Mehrere Schwachstellen
NCSC-2026-0160 [1.00] [M/H] Kwetsbaarheden verholpen in Ivanti Endpoint Manager
Bug hunter tracks down three massive MCP flaws and one vendor won't fix theirs
[NEU] [mittel] Fortinet FortiMail: Schwachstelle ermöglicht SQL Injection
1,000,000 WordPress Sites Affected by Arbitrary File Read and SQL Injection Vulnerabilities in Avada Builder WordPress Plugin
SQL command injection in administrative portal
User controlled SQL commands
Multiples vulnérabilités dans les produits Centreon (12 mai 2026)
SAP Patches Critical S/4HANA, Commerce Vulnerabilities
NCSC-2026-0140 [1.00] [M/H] Kwetsbaarheden verholpen in diverse SAP-producten
CVE-2025-14179 SQL injection in pdo_firebird via NUL bytes in quoted strings
ABB Ability Symphony Plus Engineering
LiteLLM exploited within 36 hours of disclosure via SQL injection bug
Fresh LiteLLM Vulnerability Exploited Shortly After Disclosure
[NEU] [hoch] ProFTPD: Schwachstelle ermöglicht SQL-Injection
LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of Disclosure
Hackers are exploiting a critical LiteLLM pre-auth SQLi flaw
[NEU] [hoch] LiteLLM: Mehrere Schwachstellen
[UPDATE] [hoch] Cacti: Mehrere Schwachstellen
SQL Injection via API
SQL Injection via JSON RPC API
Multiple SQL Injections