CVE WATCH / VULNERABILITY DETAIL

CVE-2026-103766

HIGHCVSS 7.2NVD feed

Published 2 October 2026 · tracked since 2 October 2026

Description

ClipBucket v5 through 5.5.3-#197 contains an sql injection vulnerability that allows authenticated users with ad_manager_access permission to inject SQL via the delete parameter in admin_area/ads_manager.php. Attackers can supply time-based blind payloads concatenated into AdsManager::DeleteAd queri

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-103766 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-103766

HIGHCVSS 7.2NVD feed

Published 2 October 2026 · tracked since 2 October 2026

Description

ClipBucket v5 through 5.5.3-#197 contains an sql injection vulnerability that allows authenticated users with ad_manager_access permission to inject SQL via the delete parameter in admin_area/ads_manager.php. Attackers can supply time-based blind payloads concatenated into AdsManager::DeleteAd queri

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]