SQL Injection Vulnerability in SOGo Web Application by Alinto
CVE-2026-46445
7.1HIGH
What is CVE-2026-46445?
A vulnerability found in SOGo versions prior to 5.12.7 exposes the application to SQL injection when using PostgreSQL as the backend database. This flaw enables attackers to manipulate SQL queries, potentially allowing unauthorized access to sensitive data stored within the application. Organizations utilizing SOGo must take immediate action to update to the latest version to mitigate the risk associated with this vulnerability, ensuring their data remains secure from potential exploitation.
Affected Version(s)
SOGo 0 < 5.12.7
