PatchSiren

GaurishBahurupi CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL GaurishBahurupi CVE published 2026-09-10

CVE-2026-38626

A critical SQL injection vulnerability exists in Garlic-Hub v1.0.1, located in the ItemsRepository.php file. This issue allows attackers to inject malicious SQL code, potentially leading to unauthorized access and data manipulation. The vulnerability has a critical CVSS score of 9.8, indicating a high severity. Administrators and developers using Garlic-Hub v1.0.1 should assess their exposure and prioriti [truncated]