Review reviewCritical
CVE-2026-52469
the affected product
SQL injection vulnerability in Crocus v.1.3.44 allows a remote attacker to escalate privileges via the DeviceInfoMapper.xml file
- CVSS
- 9.8
- EPSS
- 0.38% 30.9% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.22