Unrated severityNVD Advisory· Published Jan 28, 2026· Updated Jan 28, 2026
SQL Injection Vulnerability in Explorance Blue
CVE-2025-57792
Description
Explorance Blue versions prior to 8.14.9 contain a SQL injection vulnerability caused by insufficient validation of user input in a web application endpoint. An attacker can supply crafted input that is executed as part of backend database queries. The issue is exploitable without authentication, significantly raising the risk.
Affected products
2<=8.14.9+ 1 more
- (no CPE)range: <=8.14.9
- (no CPE)range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0001.mdmitrethird-party-advisory
- online-help.explorance.com/blue/articles/security-advisories-(january-2026)mitrevendor-advisory
- online-help.explorance.com/blue/articles/security-advisory:-cve-2025-57792mitrevendor-advisory
- www.explorance.com/products/bluemitreproduct
News mentions
0No linked articles in our index yet.