SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-81287

HIGH · CVSS 8.5 EPSS 0.28%

Source: NVD + CISA KEV + EPSS · Published 2026-08-31 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The vulnerability allows for SQL injection in Charitable versions up to and including 1.8.12.1, potentially enabling attackers to manipulate database queries and extract sensitive information. Organizations using affected versions of Charitable should prioritize patching this vulnerability to mitigate the risk of data breaches and unauthorized access. Immediate action is recommended for any entity relying on this software for managing donations or user data.

CVE
CVE-2026-81287
Severity
HIGH
CVSS
8.5
EPSS
0.28%

Original NVD Description

Subscriber SQL Injection in Charitable <= 1.8.12.1 versions.