#sql


LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of Disclosure

Apr 29, 2026 // 11:15

In yet another instance of threat actors quickly jumping on the exploitation bandwagon, a newly disclosed critical security flaw in BerriAI’s LiteLLM Python package has […]

CVE-2026-2313: Unauthenticated SQL Injection in Elementor Ally Plugin Impacts 250k+ Sites

Mar 11, 2026 // 23:30

A critical SQL Injection (SQLi) vulnerability has been discovered in the Elementor Ally plugin, putting over 250,000 WordPress sites at risk of complete database takeover. The Vulnerability: CVE-2026-0814 The flaw exists […]

“LeakyLooker” Vulnerabilities in Google Looker Studio Allow Cross-Tenant SQL Queries

Mar 10, 2026 // 17:06

The “LeakyLooker” vulnerabilities refer to a set of nine cross-tenant security flaws discovered in Google Looker Studio by Tenable Research. Disclosed on March 10, 2026, these flaws could have allowed attackers to execute […]