OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-79536

CRITICAL · CVSS 9.1 EPSS 0.24%

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

Bytebase dbhub v1.2.0 is vulnerable to a SQL injection flaw in the /utils/sql-parser.ts component, which enables attackers to execute crafted SQL statements and potentially access sensitive database information. Organizations utilizing this version should prioritize remediation to protect against unauthorized data access and ensure the integrity of their database systems.

CVE
CVE-2026-79536
Severity
CRITICAL
CVSS
9.1
EPSS
0.24%

Original NVD Description

bytebase dbhub v1.2.0 was discovered to contain a SQL injection vulnerability in the /utils/sql-parser.ts component. This vulnerability allows attackers to access sensitive databse information via a crafted SQL statement.