VYPR

CVE 2026 36670

by Gabriel Lacorte

Source repositories

CVEs (1)

  • CVE-2026-36670Jun 15, 2026
    risk 0.00cvss epss

    A Time-Based Blind SQL Injection vulnerability in the alias_management module of OpenSIPS Control Panel (opensips-cp) prior to version 9.3.3 allows authenticated attackers to execute arbitrary SQL commands via the 'table' GET parameter in alias_management.php.