Metabase SQL injection vulnerability gave unauthenticated attackers full admin access and downstream database credentials, breaching five companies. CISA added CVSS 10.0 CVE-2026-72898 and Cisco ASA ...
Attackers compile khunt inside Oracle after a web SQL injection, reach Windows SYSTEM, and stage credential data and registry ...
Panel patches CVE-2026-58048, which could let authenticated customers run SQL as database root and, in some setups, ...
A critical Gremlin API vulnerability exposed a path to any Cosmos DB instance, including Microsoft’s own services, before the company redesigned the platform.
SAP development plugins for AI coding assistants, with public-source or package-registry verification tracked where available. Live tenant and system validation is ...