Unknown · Lime Survey Community Edition · CVE-2026-18403
**Name of the Vulnerable Software and Affected Versions**
LimeSurvey Community Edition version 7.0.5
**Description**
An authenticated SQL injection exists in the Central Participant Database (CPDB) workflow. This issue occurs during the process of copying survey participant tokens to the central participant list. SQL injection is a technique where malicious SQL statements are inserted into entry fields for execution, potentially allowing unauthorized access to or manipulation of the database.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.