Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Update to the patch version released after June 26, 2026.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 30 Sep 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Digiwin
Digiwin easyflow .net |
|
| Vendors & Products |
Digiwin
Digiwin easyflow .net |
Wed, 30 Sep 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | DigiWin|EasyFlow - SQL Injection | DigiWin|EasyFlow .NET - SQL Injection |
Wed, 30 Sep 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | EasyFlow .NET developed by Digiwin has an SQL Injection vulnerability. Authenticated remote attackers can inject arbitrary SQL commands to read database contents. | |
| Title | DigiWin|EasyFlow - SQL Injection | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-09-30T09:30:39.313Z
Reserved: 2026-09-29T08:18:19.347Z
Link: CVE-2026-102456
No data.
Status : Received
Published: 2026-09-30T09:17:13.503
Modified: 2026-09-30T10:17:14.610
Link: CVE-2026-102456
No data.
OpenCVE Enrichment
Updated: 2026-09-30T10:30:17Z