SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-5955

CRITICAL · CVSS 9.8 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-07-09 · Last synced 2026-08-08

CyberRota Analysis

AI-Generated

The vulnerability in BiEticaret prior to version 3.3.57 allows for SQL injection due to improper neutralization of special elements in SQL commands. This critical flaw can lead to unauthorized access to the database, potentially exposing sensitive data or allowing for further exploitation of the system. Organizations using affected versions of BiEticaret should prioritize immediate updates to mitigate the risk of exploitation.

CVE
CVE-2026-5955
Severity
CRITICAL
CVSS
9.8
EPSS
0.27%

Original NVD Description

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Inrove Software and Internet Services BiEticaret allows SQL Injection. This issue affects BiEticaret: before v3.3.57.