Threats Tagged 'cve-2026-2094'
View all threats tagged with 'cve-2026-2094'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-2094'
Click on any threat for detailed analysis and mitigation recommendations
CVE-2026-2094 is a high-severity SQL Injection vulnerability in Flowring's Docpedia version 3.0. It allows authenticated remote attackers to inject arbitrary SQL commands, potentially leading to unauthorized reading, modification, or deletion of database contents. Exploitation requires low privileges and no user interaction, with network attack vector. Although no known exploits are reported in the wild yet, the vulnerability poses significant risks to data confidentiality, integrity, and availability. European organizations using Docpedia 3.0 are at risk, especially those in sectors handling sensitive or regulated data. Mitigation involves applying vendor patches once available, implementing strict input validation, using parameterized queries, and monitoring database activity for anomalies. Countries with higher adoption of Flowring products and critical infrastructure reliance on Docpedia are more likely to be targeted. Given the CVSS 8. Join the discussion | CVE Database V5 | 02/10/2026, 06:47:48 UTC Added: 02/10/2026, 07:16:16 UTC |
Showing 1 to 1 of 1 result