CVE-2026-48774 | sysown proxysql up to 3.0.8 /mcp/query incomplete blacklist (GHSA-7wh6-2vcc-gcm4 / EUVD-2026-38075)

SecurityVulns

A vulnerability marked as critical has been reported in sysown proxysql up to 3.0.8. Affected is an unknown function of the file /mcp/query. This manipulation causes incomplete blacklist.

This vulnerability is handled as CVE-2026-48774. The attack can be initiated remotely. There is not any exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More