CVE-2026-61851 | Chartbrew up to 5.2.1 AI Feature runQuery.js runQuery sql injection
A vulnerability marked as critical has been reported in Chartbrew up to 5.2.1. Affected by this issue is the function runQuery of the file server/modules/ai/orchestrator/tools/runQuery.js of the component AI Feature. Performing a manipulation results in sql injection.
This vulnerability is identified as CVE-2026-61851. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More