8.7

CVSS4.0

CVE-2026-33121 - DataEase has SQL Injection via Datasource Save Flow

DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below contain a SQL injection vulnerability in the API datasource saving process. The deTableName field from the Base64-encoded datasource configuration is used to construct a DDL statement via simple string โ€ฆ

๐Ÿ“… Published: April 16, 2026, 6:16 p.m. ๐Ÿ”„ Last Modified: April 16, 2026, 6:16 p.m.

8.7

CVSS4.0

CVE-2026-33084 - DataEase has SQL Injection through its getFieldEnumObj Endpoint

DataEase is an open-source data visualization and analytics platform. Versions 2.10.20 and below contain a SQL injection vulnerability in the sort parameter of the /de2api/datasetData/enumValueObj endpoint. The DatasetDataManage service layer directly transfers the user-supplied sort value to the sโ€ฆ

๐Ÿ“… Published: April 16, 2026, 6:14 p.m. ๐Ÿ”„ Last Modified: April 16, 2026, 6:14 p.m.

6.6

CVSS3.1

CVE-2025-43937 -

Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an insertion of sensitive information into log file vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to the disclosure of certain user credentials. The attacker may be able toโ€ฆ

๐Ÿ“… Published: April 16, 2026, 6:03 p.m. ๐Ÿ”„ Last Modified: April 16, 2026, 6:03 p.m.

4.4

CVSS3.1

CVE-2025-43935 -

Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper resource shutdown or release vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service.

๐Ÿ“… Published: April 16, 2026, 5:59 p.m. ๐Ÿ”„ Last Modified: April 16, 2026, 5:59 p.m.

4.1

CVSS3.1

CVE-2025-43883 -

Dell PowerScale OneFS, versions prior to 9.12.0.0, contains an improper check for unusual or exceptional conditions vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to denial of service.

๐Ÿ“… Published: April 16, 2026, 5:54 p.m. ๐Ÿ”„ Last Modified: April 16, 2026, 5:54 p.m.
Load More Vulnerability
avatar

Mehmet Ince

@mdisec

CVE stats coming here

avatar

Nuri ร‡ilengir

@ncilengir

CVE stats coming here

avatar

@aydinnyunus

CVE stats coming here

avatar

Onurcan Genรง

@onurcangnc

CVE stats coming here

avatar

Seyit Sigirci

@h3xecute

CVE stats coming here

avatar

Ali ฤฐltizar

@iltosec

CVE stats coming here

avatar

@b3rsec

CVE stats coming here

avatar

@furkank

CVE stats coming here

avatar

kutaysec

@kutaysec

CVE stats coming here