MEDIUM
L-ONE
CVE published 2026-09-08
CVE-2026-79573
A PatchSiren debrief of CVE-2026-79573, a SQL injection vulnerability in L-ONE v1.0.0. The vulnerability allows attackers to access sensitive database information via a crafted SQL statement in the /attachment/getBusinessUploadList component. Defenders should assess exposure and potential database information access. The CVE record and NVD entry provide details on the vulnerability, but verification from [truncated]