CVE-2026-108821 | Tencent WeKnora up to 0.8.1 SQL Validator internal/utils/inject.go validateSubquery sql injection

SecurityVulns

A vulnerability classified as critical has been found in Tencent WeKnora up to 0.8.1. Impacted is the function validateSubquery of the file internal/utils/inject.go of the component SQL Validator. The manipulation leads to sql injection.

This vulnerability is uniquely identified as CVE-2026-108821. The attack is possible to be carried out remotely. Moreover, an exploit is present.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More