Skip to content
Critical SQL Injection and Authorization Bypass Vulnerabilities Disclosed

Critical SQL Injection and Authorization Bypass Vulnerabilities Disclosed

First seen 18 Sep 2026, 01:22 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster September 18, 2026 at 02:00 UTC
  • CVE-2026-93292 allows SQL injection in SigNoz, risking sensitive data exposure.
  • CVE-2026-92753 enables authorization bypass in PatrowlManager, affecting user alerts.
  • Both vulnerabilities are high-risk for internet-facing deployments and require urgent patching.

Two significant vulnerabilities have been disclosed affecting SigNoz and PatrowlManager. CVE-2026-93292 in SigNoz versions 0.88.0 to 0.142.1 allows low-privilege authenticated users to exploit SQL injection in trace-funnel analytics endpoints. This could lead to unauthorized access to sensitive telemetry and operational data. CVE-2026-92753 in PatrowlManager versions up to 1.8.4 permits authenticated attackers to bypass authorization, enabling them to read, delete, and modify alerts and events of other users. Both vulnerabilities are high-risk for internet-facing deployments, with exploitation paths requiring minimal effort and no elevated privileges. Current status indicates no confirmed active exploitation for either CVE, but urgent remediation is advised due to the potential impact on sensitive data and user trust.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-09-16
CVE-2026-92753 published
PatrowlManager vulnerability disclosed, allowing unauthorized access to alerts and events.
Redpacketsecurity
2026-09-17
CVE-2026-93292 published
SQL injection vulnerability in SigNoz disclosed, affecting versions 0.88.0 to 0.142.1.
Redpacketsecurity
Recent
Urgent patching recommended
Security professionals advised to upgrade to fixed releases and restrict access until patches are applied.
Redpacketsecurity

More articles in this cluster (5)

Following this threat?

Track CVE-2026-92753 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed