VYPR
Unrated severityNVD Advisory· Published Jul 1, 2026· Updated Jul 1, 2026

CVE-2026-51946

CVE-2026-51946

Description

SQL Injection vulnerability in GoAdminGroup GoAdmin (last release v1.2.26) allows a remote attacker to execute arbitrary code and obtain sensitive information via the the __sort_type URL parameter on all /admin/info/{table} endpoints

Affected products

1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.