SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-25405

HIGH · CVSS 8.5 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

eRoom versions up to 1.7.1 are vulnerable to a SQL Injection flaw that allows attackers to manipulate database queries, potentially leading to unauthorized data access or modification. Organizations using this software should prioritize remediation efforts due to the high severity rating, as exploitation could result in significant data breaches or integrity issues.

CVE
CVE-2026-25405
Severity
HIGH
CVSS
8.5
EPSS
0.21%

Original NVD Description

Contributor SQL Injection in eRoom <= 1.7.1 versions.