SOGo before 5.12.7, when PostgreSQL is used, allows SQL injection.
Metrics
Affected Vendors & Products
References
History
Thu, 14 May 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SOGo Webmail Server SQL Injection via PostgreSQL |
Thu, 14 May 2026 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SOGo before 5.12.7, when PostgreSQL is used, allows SQL injection. | |
| First Time appeared |
Alinto
Alinto sogo |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:alinto:sogo:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Alinto
Alinto sogo |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-05-14T03:19:37.822Z
Reserved: 2026-05-14T03:10:31.633Z
Link: CVE-2026-46445
No data.
Status : Received
Published: 2026-05-14T04:17:03.193
Modified: 2026-05-14T04:17:03.193
Link: CVE-2026-46445
No data.
OpenCVE Enrichment
Updated: 2026-05-14T06:00:11Z