PT-2026-31126 · Amelia · Amelia

Published

2026-04-08

·

Updated

2026-04-12

·

CVE-2026-39487

CVSS v3.1

7.6

High

AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:N/A:L
Name of the Vulnerable Software and Affected Versions ameliabooking Amelia versions through 2.1.1
Description An SQL Injection issue exists in ameliabooking Amelia, allowing Blind SQL Injection. The issue is due to improper neutralization of special elements used in an SQL command.
Recommendations Update to a version newer than 2.1.1.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-39487

Affected Products

Amelia