Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Yogender

#21298of 56,333
13Total CVSS
Vulnerabilities · 2
Medium
2
PT-2026-84163
6.5
2026-09-01
Unknown · Openchatbi · CVE-2026-84061
**Name of the Vulnerable Software and Affected Versions** zhongyu09 OpenChatBI versions prior to 1.0.0b1 **Description** A remote SQL injection flaw exists in the ` validate sql safety()` function within the openchatbi/text2sql/generate sql.py file. This issue occurs because the SQL safety validation is either entirely absent or incomplete, allowing an attacker to manipulate queries remotely. **Recommendations** Update to version 1.0.0b1 or later. As a temporary workaround, restrict access to the ` validate sql safety()` function to minimize the risk of exploitation.
PT-2026-79048
6.5
2026-08-20
Sourcecodester · Cet Automated Grading System With Ai Predictive Analytics · CVE-2026-76999
**Name of the Vulnerable Software and Affected Versions** SourceCodester CET Automated Grading System with AI Predictive Analytics version 1.0 **Description** An improper authorization issue exists in the `add grade()` function within the `/index.php` file. A remote attacker can exploit this by manipulating the `student id` variable to gain unauthorized access or perform unauthorized actions. **Recommendations** Update SourceCodester CET Automated Grading System with AI Predictive Analytics version 1.0 to a patched version. As a temporary workaround, restrict access to the `add grade()` function in the `/index.php` file to minimize the risk of exploitation.