Critical severity10.0NVD Advisory· Published Aug 19, 2026
CVE-2026-22306
CVE-2026-22306
Description
Download of code without integrity check, inclusion of functionality from untrusted control sphere, and cleartext transmission of sensitive information vulnerability in Ozols Grupa OZOLS on Windows caused by an abandoned auto-update domain. Affected component: the automatic update channel - OzolsSQL client update path, the _update SQL Server Agent job (@subsystem = N'ActiveScripting') and serv_update.vbs.
This issue affects OZOLS: before 1.1.1233.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <1.1.1233
- Range: <1.1.1233
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.