VYPR

Manticore Search

by Manticore Search

CVEs (1)

  • CVE-2026-92796HigSep 16, 2026
    risk 0.57cvss 8.8epss

    Manticore Search versions 27.0.0 before 28.4.4 fail to validate permissions for all statements in multi-statement SQL requests, allowing read-only users to execute unauthorized queries. Attackers can append additional SELECT statements after the first statement to read…