CVE-2026-15600 | Alior Bank raty up to 8.1.11/9.0.7 toggleCategoryPromotionAction Status sql injection

SecurityVulns

A vulnerability described as problematic has been identified in Alior Bank raty up to 8.1.11/9.0.7. Impacted is the function toggleCategoryPromotionAction. Such manipulation of the argument Status leads to sql injection.

This vulnerability is uniquely identified as CVE-2026-15600. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is recommended.VulDB Recent EntriesRead More