VYPR
Vendor

GoAdminGroup

Products
2
CVEs
2
Across products
2
Status
Private

Products

2

Recent CVEs

2
  • CVE-2026-92793HigSep 16, 2026
    risk 0.46cvss 8.1epss 0.00

    GoAdmin through 1.2.26 fails to properly anchor the logout pattern when checking permissions, allowing authenticated users to bypass permission checks by appending a query parameter. Attackers can append a query string containing the admin prefix followed by /logout to reach…

  • CVE-2026-51946MedJul 1, 2026
    risk 0.00cvss 6.5epss 0.00

    SQL Injection vulnerability in GoAdminGroup GoAdmin (last release v1.2.26) allows a remote attacker to execute arbitrary code and obtain sensitive information via the the __sort_type URL parameter on all /admin/info/{table} endpoints