UNKNOWN NVD
CVE-2026-51366
SQL Injection vulnerability in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to execute arbitrary code via the api_vedo/chat endpoint and t
SQL Injection vulnerability in Bottinelli Informatica Vedo Suite v.1.2.5 allows a remote attacker to execute arbitrary code via the api_vedo/chat endpoint and the utente_chat parameter
References
- https://blog.elmec.com/cve-2026-51366-sql-injection-leading-to-remote-code-execution
- https://www.bottinelliinformatica.it/it/vedo-suite/
- https://www.cybergon.com/
This unknown severity vulnerability was published on 2026-08-19 via NVD.
vulnfeed aggregates 11644 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.