PatchSiren

FineAdmin CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL FineAdmin CVE published 2026-08-06

CVE-2026-67689

CVE-2026-67689 debrief: SQL Injection vulnerability in FineAdmin V1.0 allows remote attackers to execute arbitrary code via the `field` and `order` parameters in paginated list endpoints. This vulnerability has a CVSS score of 9.8 and is considered CRITICAL. Users of FineAdmin V1.0 should verify their usage and prepare for potential remediation. The CVE record was published on 2026-08-06T22:18:23.240Z and [truncated]