โ† All reports

SocialEngine versions 7.8.0 and prior have a blind server-side request forgery vulnerability that could allow unauthorized actions.

CybersecurityTechnologyConflictApr 23, 2026score 0.172 posts ยท 0 replies across 1 instances
The thread discusses two critical vulnerabilities in the SocialEngine platform, highlighting security risks that could allow unauthorized access and data manipulation. These vulnerabilities are significant due to their high CVSS scores and potential impact on user data and system integrity.

Claims

SocialEngine versions 7.8.0 and prior have a blind server-side request forgery vulnerability that could allow unauthorized actions.
Parent: CybersecurityEntity: SocialEngineImpact: negativeDate: Apr 23, 2026Target: SocialEngine's security practices
SocialEngine versions 7.8.0 and prior have a SQL injection vulnerability that could allow unauthorized access to database information.
Parent: CybersecurityEntity: SocialEngineImpact: negativeDate: Apr 23, 2026Target: SocialEngine's security practices

Source posts

@[email protected]
๐Ÿšจ EUVD-2026-25224 ๐Ÿ“Š Score: 9.3/10 (CVSS v3.1) ๐Ÿ“ฆ Product: SocialEngine ๐Ÿข Vendor: SocialEngine ๐Ÿ“… Updated: 2026-04-23 ๐Ÿ“ SocialEngine versions 7.8.0 and prior contain a SQL injection vulnerability in the /activity/index/get-memberall endpoint where user-supplied input passed via the text parameter is not sanitized before being incorporated into a SQL query. An unauth... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25224 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability
@[email protected]
๐Ÿšจ EUVD-2026-25226 ๐Ÿ“Š Score: 6.3/10 (CVSS v3.1) ๐Ÿ“ฆ Product: SocialEngine ๐Ÿข Vendor: SocialEngine ๐Ÿ“… Updated: 2026-04-23 ๐Ÿ“ SocialEngine versions 7.8.0 and prior contain a blind server-side request forgery vulnerability in the /core/link/preview endpoint where user-supplied input passed via the uri request parameter is not sanitized before being used to construct outbou... ๐Ÿ”— https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-25226 #cybersecurity #infosec #euvd #cve #vulnerability
0 boosts ยท 0 favs ยท 0 replies ยท Apr 23, 2026
#cybersecurity#infosec#euvd#cve#vulnerability