Back to Blog
9 posts with this tag

#SQL Injection

9 posts
Metabase zero-day turns BI dashboards into a data-exposure path

Metabase zero-day turns BI dashboards into a data-exposure path

Metabase zero-day turns BI dashboards into a data-exposure path Metabase has confirmed active exploitation of CVE-2026-72898, a critical unauthenticated [SQL in...

Last updated on 15/08/2026 at 1:46 PM
6 min read
Adobe Campaign Classic flaws put on-prem marketing systems on the emergency patch list

Adobe Campaign Classic flaws put on-prem marketing systems on the emergency patch list

Adobe Campaign Classic flaws put on-prem marketing systems on the emergency patch list Adobe has released an urgent security update for Adobe Campaign Classic a...

Last updated on 02/08/2026 at 8:06 AM
5 min read
wp2shell puts WordPress core in emergency patch mode

wp2shell puts WordPress core in emergency patch mode

wp2shell puts WordPress core in emergency patch mode WordPress administrators have a rare core-level emergency on their hands. On July 17, 2026, WordPress relea...

Last updated on 17/08/2026 at 12:56 PM
6 min read
Drupal PostgreSQL SQLi shows how SELECT-only injection becomes RCE

Drupal PostgreSQL SQLi shows how SELECT-only injection becomes RCE

Drupal PostgreSQL SQLi shows how SELECT-only injection becomes RCE Lexfo's May 26, 2026 write-up on CVE-2026-9082 matters because it breaks a common defensive a...

Last updated on 17/08/2026 at 12:56 PM
5 min read
CVE-2026-9082 makes Drupal on PostgreSQL an urgent KEV patch priority

CVE-2026-9082 makes Drupal on PostgreSQL an urgent KEV patch priority

CVE-2026-9082 makes Drupal on PostgreSQL an urgent KEV patch priority CVE-2026-9082 is no longer just a critical Drupal patch note. It is now an actively target...

Last updated on 17/08/2026 at 12:56 PM
5 min read
LiteLLM SQL injection flaw puts AI gateways on the front line

LiteLLM SQL injection flaw puts AI gateways on the front line

LiteLLM SQL injection flaw puts AI gateways on the front line CVE-2026-42208 matters because it turns an AI gateway into a high-value choke point for attackers....

Last updated on 17/08/2026 at 12:56 PM
5 min read
CVE-2026-42208 turns exposed LiteLLM gateways into a secrets exposure risk

CVE-2026-42208 turns exposed LiteLLM gateways into a secrets exposure risk

CVE-2026-42208 turns exposed LiteLLM gateways into a secrets exposure risk CVE-2026-42208 is a critical SQL injection flaw in LiteLLM's proxy API key verificati...

Last updated on 17/08/2026 at 12:56 PM
5 min read
CVE-2026-21643: FortiClient EMS exploitation puts exposed endpoint managers at immediate risk

CVE-2026-21643: FortiClient EMS exploitation puts exposed endpoint managers at immediate risk

CVE-2026-21643: FortiClient EMS exploitation puts exposed endpoint managers at immediate risk CVE-2026-21643 is the kind of flaw defenders should treat as an im...

Last updated on 17/08/2026 at 12:55 PM
5 min read

LeakyLooker: 9 Google Looker Studio Flaws Enabled Cross-Tenant SQL and Data Theft

LeakyLooker: 9 Google Looker Studio Flaws Enabled Cross-Tenant SQL and Data Theft | 2026 Executive Summary LeakyLooker is the name Tenable gave to a set of nine...

Last updated on 17/08/2026 at 12:55 PM
5 min read