What is CVE-2026-49392?
CVE-2026-49392 is an SQL injection vulnerability in the Wazuh platform affecting `DB::getFile()` and `DB::searchFile()` functions in `file.cpp`, particularly on non-Windows systems. This flaw arises from improper concatenation of file paths into SQLite row filters. Users should apply the necessary security patches provided by Wazuh.
Azərbaycanca: CVE-2026-49392 Wazuh platformunda aşkar edilmiş SQL injection zəifliyidir. Bu zəiflik `file.cpp` faylındakı `DB::getFile()` və `DB::searchFile()` funksiyalarına aid olub, xüsusilə qeyri-Windows sistemlərdə təhlükə yaradır. İstifadəçilərə Wazuh tərəfindən təqdim edilən müvafiq təhlükəsizlik yamalarını tətbiq etmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
Which components of Wazuh are affected by CVE-2026-49392?
CVE-2026-49392 is an SQL injection vulnerability affecting the `DB::getFile()` and `DB::searchFile()` functions in `file.cpp`.
What should users do to protect against CVE-2026-49392?
Users should apply the necessary security patches provided by Wazuh.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.