HIGH
Qdpm
CVE published 2026-04-05
CVE-2019-25669
CVE-2019-25669 is an SQL injection vulnerability in qdPM 9.1, allowing attackers to manipulate database queries by injecting SQL code through the search_by_extrafields[] parameter. This can lead to unauthorized data access and manipulation. System administrators and security professionals should prioritize patching this vulnerability to prevent potential data breaches.