AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-28156

HIGH · CVSS 8.5 EPSS 0.34%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The vulnerability allows for SQL injection in the Do Lasso application, affecting all versions up to and including 358, which could enable attackers to execute arbitrary SQL queries and potentially gain unauthorized access to sensitive data. Organizations utilizing this software should prioritize remediation efforts due to the high severity rating, as exploitation could lead to significant data breaches and compromise of database integrity. Immediate action is recommended for any entities relying on affected versions to mitigate potential risks.

CVE
CVE-2026-28156
Severity
HIGH
CVSS
8.5
EPSS
0.34%

Original NVD Description

Subscriber SQL Injection in Do Lasso <= 358 versions.