PatchSiren

Coyavtravel CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL Coyavtravel CVE published 2023-09-05

CVE-2023-35072

CVE-2023-35072 is a critical SQL injection vulnerability in Coyavtravel Proagent affecting versions before 20230904. The NVD record rates it 9.8/CRITICAL and shows a network-reachable attack path with no privileges or user interaction required. Because the CVSS impacts are high for confidentiality, integrity, and availability, exposed deployments should be treated as urgent remediation candidates.