What is CVE-2026-18403?
CVE-2026-18403 is an authenticated SQL injection vulnerability in LimeSurvey Community Edition 7.0.5. The flaw occurs in the Central Participant Database (CPDB) workflow while copying survey participant tokens. Updating to the latest version of LimeSurvey is recommended.
Azərbaycanca: CVE-2026-18403, LimeSurvey Community Edition 7.0.5 proqramında autentifikasiya olunmuş SQL injection zəifliyidir. Bu boşluq Central Participant Database (CPDB) əməliyyatında iştirakçı tokenlərinin kopyalanması zamanı yaranır. Təhlükəsizlik üçün LimeSurvey-in ən son versiyasına yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
Which version of LimeSurvey is affected by CVE-2026-18403?
This SQL injection vulnerability affects LimeSurvey Community Edition version 7.0.5.
During which operation does CVE-2026-18403 occur in LimeSurvey?
The flaw occurs while copying survey participant tokens within the Central Participant Database (CPDB) workflow.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.