SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-89180

HIGH · CVSS 7.5

Source: NVD + CISA KEV + EPSS · Published 2026-09-14 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The EFence application by Thinking Software Technology is vulnerable to a SQL Injection flaw that enables unauthenticated remote attackers to execute arbitrary SQL commands, potentially exposing sensitive database information. Organizations utilizing EFence should prioritize remediation efforts due to the high severity of this vulnerability, which could lead to significant data breaches. Immediate action is recommended to safeguard against potential exploitation.

CVE
CVE-2026-89180
Severity
HIGH
CVSS
7.5
EPSS
N/A

Original NVD Description

EFence developed by Thinking Software Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read database contents.