PT-2026-7234 · Flowring · Docpedia

Chunhao Yang

·

Published

2026-02-10

·

Updated

2026-02-15

·

CVE-2026-2093

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Docpedia (affected versions not specified)
Description Docpedia, developed by Flowring, exhibits a SQL Injection issue. This allows attackers who do not need to log in to inject and execute arbitrary SQL commands, potentially leading to unauthorized access to database contents.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2026-2093

Affected Products

Docpedia