High severityNVD Advisory· Published Feb 26, 2026· Updated Apr 15, 2026
CVE-2026-1198
CVE-2026-1198
Description
SIMPLE.ERP is vulnerable to the SQL Injection in search functionality in "Obroty na kontach" window. Lack of input validation allows an authenticated attacker to prepare a malicious query to the database that will be executed. This issue was fixed in 6.30@A04.4_u06.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: <6.30@A04.4_u06
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.