What is CVE-2026-52476?
This SQL Injection vulnerability affects aiflowy versions up to 2.1.2, allowing a remote attacker to extract sensitive information through the getPageData method in the DatacenterQuery.java file.
Azərbaycanca: Bu SQL Injection zəifliyi aiflowy platformasının 2.1.2 və daha əvvəlki versiyalarında aşkarlanıb. Uzaqdan hücum edən şəxs DatacenterQuery.java faylındakı getPageData metodu vasitəsilə həssas məlumatlara icazəsiz əldə edə bilər.
Related CVEs
link basis: same weakness class CWE-89
FAQ2
Which versions of the aiflowy platform are affected by CVE-2026-52476?
This SQL Injection vulnerability affects aiflowy versions up to 2.1.2.
How can an attacker exploit CVE-2026-52476 to obtain sensitive information?
A remote attacker can extract sensitive information through the getPageData method in the DatacenterQuery.java file.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.