Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Andrew Van Fleteren

#38070of 53,635
7.3Total CVSS
Vulnerabilities · 1
PT-2026-25077
7.3
2026-03-12
Anchore · Anchore Enterprise · CVE-2026-25076
**Name of the Vulnerable Software and Affected Versions** Anchore Enterprise versions prior to 5.25.1 **Description** Anchore Enterprise is affected by an SQL injection issue in the GraphQL Reports API. An authenticated attacker with access to the GraphQL API can execute arbitrary SQL instructions, potentially modifying data within the Anchore Enterprise database. The vulnerable API endpoint is the GraphQL Reports API. **Recommendations** Update Anchore Enterprise to version 5.25.1 or later.