CVE-2026-96430
— UNSCOREDPublished 2026-09-29 · Updated 2026-09-29
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
Exposed Dangerous Method or Function in the /WebAgenda/SQLWin.do API endpoint of Flowring Agentflow 4.0 version Before 2026/08/28 allows remote authenticated users to execute arbitrary SQL commands via the sql parameter.
Weaknesses
CWE-749
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2026-18901PoC
- HIGHCVE-2026-25255
- UNSCOREDCVE-2026-61793PoC
- HIGHCVE-2026-68928PoC
- CRITICALCVE-2026-77521PoC
- MEDIUMCVE-2026-86157
- UNSCOREDCVE-2026-89139PoC
- UNSCOREDCVE-2026-92612PoC
Related by shared AI tags and CWE weakness class. Browse the full archive.