CVE WATCH / VULNERABILITY DETAIL
CVE-2026-105158
HIGHCVSS 7.3NVD feed
Published 4 October 2026 · tracked since 4 October 2026
Description
A vulnerability was detected in RainyGao DocSys up to 2.02.85. The impacted element is the function BaseController.createDBForMysql of the file BaseController.java of the component Database Management. The manipulation of the argument url results in sql injection. The attack can be executed remotely
References
- NVD — National Vulnerability Database
- CVE.org record (MITRE)
- CISA Known Exploited Vulnerabilities catalog
Latest tracked vulnerabilities
- CVE-2026-105217 LOW 3.1
- CVE-2026-105219 HIGH 7.5
- CVE-2026-105089 HIGH 8.7
- CVE-2026-105224 MEDIUM 5.4
- CVE-2026-105215 CRITICAL 9.1
- CVE-2026-105156 LOW 3.7
- CVE-2026-105146 MEDIUM 4.7
- CVE-2026-105144 MEDIUM 5.3
- CVE-2026-105137 MEDIUM 5
- CVE-2026-86817