www.vulncheck.com Multiple SQL Injection Vulnerabilities Discovered in Yeswiki and Utmstack
Article Content
- •Yeswiki and Utmstack are affected by SQL injection vulnerabilities.
- •Both vulnerabilities allow unauthorized access through specific parameters.
- •No active exploitation or proof-of-concept code has been reported.
Two separate SQL injection vulnerabilities have been identified in Yeswiki versions prior to 4.6.7 and Utmstack. The vulnerabilities, classified under CWE-89, allow attackers to manipulate SQL queries via specific parameters. Yeswiki's flaw is found in the 'filtertags' parameter, while Utmstack is affected through 'searchgroupsbyfilter'. Both vulnerabilities pose a risk of unauthorized data access and manipulation. There are no reports of or proof-of-concept code available for either vulnerability at this time. Users are advised to prioritize patching these vulnerabilities as part of their security measures. The vulnerabilities were disclosed on October 3, 2026, with no known exploits reported yet.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Common questions
Which versions of Yeswiki are affected?
Is there a patch available?
What should organizations do to protect themselves?
Continue Reading
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…
Critical Citrix NetScaler Zero-Day Vulnerabilities Exploited Citrix disclosed two critical zero-day vulnerabilities, CVE-2026-88771 and CVE-2026-88772, affecting NetScaler ADC and Gateway systems, which are being actively exploited. Both vulnerabilities have a CVSS score of 9.5 and allow unauthenticated attackers to execute arbitrary commands remotely. CVE-2026-88771 arises…