<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #SQL Injection</title><description>Cybersecurity articles tagged #SQL Injection on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Mathspace Breach: Over 1 Million Impacted by Metabase Zero-Day</title><link>https://runtimerebel.com/blog/mathspace-breach-over-1-million-impacted-by-metabase-zero-day</link><guid isPermaLink="true">https://runtimerebel.com/blog/mathspace-breach-over-1-million-impacted-by-metabase-zero-day</guid><description>Mathspace disclosed a data breach affecting over 1 million students, staff, and parents due to a Metabase vulnerability.</description><pubDate>Mon, 07 Sep 2026 13:49:42 GMT</pubDate><category>Data Breach</category><category>SQL Injection</category><category>ShinyHunters</category><category>Zero-Day</category><category>Mathspace</category></item><item><title>CVE-2026-9586: Sangoma Switchvox RCE via SQL Injection</title><link>https://runtimerebel.com/blog/cve-2026-9586-sangoma-switchvox-rce-via-sql-injection</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-9586-sangoma-switchvox-rce-via-sql-injection</guid><description>Sangoma Switchvox is affected by CVE-2026-9586, an unauthenticated remote SQL injection vulnerability enabling RCE, with active exploitation confirmed.</description><pubDate>Wed, 02 Sep 2026 19:12:29 GMT</pubDate><category>CVE-2026-9586</category><category>Sangoma Switchvox</category><category>SQL Injection</category><category>Remote Code Execution</category><category>CISA KEV</category></item><item><title>ShinyHunters Breaches ShipMonk: 14,000 Trezor Customers&apos; Data Exposed</title><link>https://runtimerebel.com/blog/shinyhunters-breaches-shipmonk-14000-trezor-customers-data-exposed</link><guid isPermaLink="true">https://runtimerebel.com/blog/shinyhunters-breaches-shipmonk-14000-trezor-customers-data-exposed</guid><description>ShinyHunters group breached shipping provider ShipMonk, exposing personal data of 14,000 Trezor customers via a Metabase SQL injection vulnerability.</description><pubDate>Fri, 14 Aug 2026 09:00:29 GMT</pubDate><category>Data Breach</category><category>ShinyHunters</category><category>SQL Injection</category><category>ShipMonk</category><category>Trezor</category></item><item><title>CVE-2026-72898: Metabase SQL Injection Active Exploitation</title><link>https://runtimerebel.com/blog/cve-2026-72898-metabase-sql-injection-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-72898-metabase-sql-injection-active-exploitation</guid><description>CISA adds Metabase CVE-2026-72898 SQL injection to its KEV catalog, enabling unauthenticated remote attackers to gain admin access.</description><pubDate>Wed, 12 Aug 2026 01:08:08 GMT</pubDate><category>CVE-2026-72898</category><category>Metabase</category><category>SQL Injection</category><category>CISA KEV</category><category>Remote Code Execution</category></item><item><title>Metabase Zero-Day SQL Vulnerability Threatens Analytics Platforms</title><link>https://runtimerebel.com/blog/metabase-zero-day-sql-vulnerability-threatens-analytics-platforms</link><guid isPermaLink="true">https://runtimerebel.com/blog/metabase-zero-day-sql-vulnerability-threatens-analytics-platforms</guid><description>Unpatched Metabase business-analytics zero-day vulnerability allows remote administrative access and threatens downstream corporate networks.</description><pubDate>Tue, 11 Aug 2026 16:50:53 GMT</pubDate><category>Metabase</category><category>Zero-Day</category><category>Remote Code Execution</category><category>SQL Injection</category><category>Vulnerability</category></item><item><title>Metabase Zero-Day Exploited: Unauthenticated Admin Access</title><link>https://runtimerebel.com/blog/metabase-zero-day-exploited-unauthenticated-admin-access</link><guid isPermaLink="true">https://runtimerebel.com/blog/metabase-zero-day-exploited-unauthenticated-admin-access</guid><description>Metabase zero-day vulnerability (CVSS 10.0) actively exploited, allowing unauthenticated remote attackers to gain admin access and steal data.</description><pubDate>Sat, 08 Aug 2026 08:28:26 GMT</pubDate><category>Zero-Day</category><category>SQL Injection</category><category>Unauthenticated Access</category><category>Data Breach</category><category>Metabase</category></item><item><title>Metabase SQLi Zero-Day Exploited: Data Theft Attacks Confirmed</title><link>https://runtimerebel.com/blog/metabase-sqli-zero-day-exploited-data-theft-attacks-confirmed</link><guid isPermaLink="true">https://runtimerebel.com/blog/metabase-sqli-zero-day-exploited-data-theft-attacks-confirmed</guid><description>A critical Metabase SQL injection zero-day vulnerability (versions 1.58+) has been exploited in data theft attacks affecting customers like Framework and Tally.</description><pubDate>Sat, 08 Aug 2026 00:54:50 GMT</pubDate><category>SQL Injection</category><category>Zero-Day</category><category>Data Breach</category><category>Metabase</category><category>Framework</category></item><item><title>khunt Toolkit Leverages SQLi in Oracle for SYSTEM Access</title><link>https://runtimerebel.com/blog/khunt-toolkit-leverages-sqli-in-oracle-for-system-access</link><guid isPermaLink="true">https://runtimerebel.com/blog/khunt-toolkit-leverages-sqli-in-oracle-for-system-access</guid><description>Attackers exploit SQL injection in a public-facing web app to compile the khunt toolkit within Oracle, achieving SYSTEM-level access on Windows servers.</description><pubDate>Thu, 06 Aug 2026 10:29:03 GMT</pubDate><category>SQL Injection</category><category>Post Exploitation</category><category>Windows</category><category>Oracle Database</category><category>Khunt</category></item><item><title>CVE-2026-58048: cPanel &amp; WHM Critical SQL Privilege Escalation</title><link>https://runtimerebel.com/blog/cve-2026-58048-cpanel-whm-critical-sql-privilege-escalation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-58048-cpanel-whm-critical-sql-privilege-escalation</guid><description>A critical flaw in cPanel &amp; WHM (CVE-2026-58048) allows authenticated users to execute SQL as database root, potentially leading to OS-level compromise.</description><pubDate>Tue, 04 Aug 2026 11:21:13 GMT</pubDate><category>cPanel</category><category>SQL Injection</category><category>Privilege Escalation</category><category>Web Hosting</category><category>WHM</category></item><item><title>CVE-2026-60137: WordPress Core SQL Injection to RCE — Patch Now</title><link>https://runtimerebel.com/blog/cve-2026-60137-wordpress-core-sql-injection-to-rce-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-60137-wordpress-core-sql-injection-to-rce-patch-now</guid><description>CISA warns of active exploitation for CVE-2026-60137, a WordPress Core SQL Injection vulnerability chaining to RCE for unauthenticated attackers.</description><pubDate>Sun, 02 Aug 2026 02:55:48 GMT</pubDate><category>WordPress</category><category>SQL Injection</category><category>RCE</category><category>CISA KEV</category><category>CVE-2026-60137</category></item><item><title>CVE-2026-63030: WordPress Core SQLi Leads to Unauth RCE</title><link>https://runtimerebel.com/blog/cve-2026-63030-wordpress-core-sqli-leads-to-unauth-rce</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-63030-wordpress-core-sqli-leads-to-unauth-rce</guid><description>Critical SQL injection vulnerability (CVE-2026-63030) in WordPress Core enables unauthenticated remote code execution. Active exploitation confirmed.</description><pubDate>Mon, 20 Jul 2026 21:15:06 GMT</pubDate><category>CVE-2026-63030</category><category>WordPress</category><category>SQL Injection</category><category>RCE</category><category>Wp2shell</category></item><item><title>Critical RCEs: FortiNAC CVE-2023-33300 &amp; SonicWall SMA Zero-Day</title><link>https://runtimerebel.com/blog/critical-rces-fortinac-cve-2023-33300-sonicwall-sma-zero-day</link><guid isPermaLink="true">https://runtimerebel.com/blog/critical-rces-fortinac-cve-2023-33300-sonicwall-sma-zero-day</guid><description>Two critical vulnerabilities, FortiNAC RCEs (CVE-2023-33300, CVE-2023-33299) and a SonicWall SMA zero-day SQLi, require immediate patching and mitigation.</description><pubDate>Tue, 07 Jul 2026 03:34:45 GMT</pubDate><category>CVE-2023-33300</category><category>CVE-2023-33299</category><category>CVE-2023-34124</category><category>Fortinet FortiNAC</category><category>SonicWall SMA 100</category><category>RCE</category><category>SQL Injection</category><category>Zero-Day</category></item><item><title>Siemens KACO Blueplanet Inverter Vulnerabilities: CVE-2025-40946 &amp; CVE-2026-41125</title><link>https://runtimerebel.com/blog/siemens-kaco-blueplanet-inverter-vulnerabilities-cve-2025-40946-cve-2026-41125</link><guid isPermaLink="true">https://runtimerebel.com/blog/siemens-kaco-blueplanet-inverter-vulnerabilities-cve-2025-40946-cve-2026-41125</guid><description>Critical Siemens KACO Blueplanet Inverters are vulnerable to credential derivation (CVE-2025-40946) and SQL injection (CVE-2026-41125).</description><pubDate>Tue, 09 Jun 2026 17:02:56 GMT</pubDate><category>Siemens</category><category>KACO Blueplanet Inverters</category><category>ICS</category><category>Energy Sector</category><category>CVE-2025-40946</category><category>CVE-2026-41125</category><category>Hard Coded Key</category><category>SQL Injection</category><category>Operational Technology</category></item><item><title>Hardening Automatic Tank Gauge Systems Against Cyber Threats</title><link>https://runtimerebel.com/blog/hardening-automatic-tank-gauge-systems-against-cyber-threats</link><guid isPermaLink="true">https://runtimerebel.com/blog/hardening-automatic-tank-gauge-systems-against-cyber-threats</guid><description>CISA and partners warn of active cyber threats targeting Automatic Tank Gauge (ATG) systems. Learn to secure critical infrastructure assets now.</description><pubDate>Tue, 02 Jun 2026 21:12:50 GMT</pubDate><category>ATG Systems</category><category>Operational Technology</category><category>ICS Security</category><category>Critical Infrastructure</category><category>CISA Advisory</category><category>Cyber Threat Actors</category><category>Authentication Bypass</category><category>Privilege Escalation</category><category>SQL Injection</category></item><item><title>CVE-2023-48788: Critical FortiClient EMS RCE Under Active Exploitation</title><link>https://runtimerebel.com/blog/cve-2023-48788-critical-forticlient-ems-rce-under-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2023-48788-critical-forticlient-ems-rce-under-active-exploitation</guid><description>Exploitation of CVE-2023-48788 in FortiClient EMS allows unauthenticated remote code execution. Administrators must patch to version 7.2.3 or 7.0.11 immediately.</description><pubDate>Thu, 28 May 2026 13:26:51 GMT</pubDate><category>Fortinet</category><category>CVE-2023-48788</category><category>RCE</category><category>FortiClient EMS</category><category>SQL Injection</category></item><item><title>Drupal 7.x SQL Injection CVE-2014-3704 — Active Exploitation Alert</title><link>https://runtimerebel.com/blog/drupal-7-x-sql-injection-cve-2014-3704-active-exploitation-alert</link><guid isPermaLink="true">https://runtimerebel.com/blog/drupal-7-x-sql-injection-cve-2014-3704-active-exploitation-alert</guid><description>CISA adds Drupalgeddon SQL injection (CVE-2014-3704) to KEV catalog, mandating federal agencies to patch critical legacy systems against active exploits.</description><pubDate>Tue, 26 May 2026 09:19:03 GMT</pubDate><category>CVE-2014-3704</category><category>Drupal</category><category>SQL Injection</category><category>CISA KEV</category></item><item><title>CVE-2026-26980: Ghost CMS SQL Injection Leads to ClickFix Attacks</title><link>https://runtimerebel.com/blog/cve-2026-26980-ghost-cms-sql-injection-leads-to-clickfix-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-26980-ghost-cms-sql-injection-leads-to-clickfix-attacks</guid><description>Attackers exploit CVE-2026-26980 in Ghost CMS to compromise 700+ websites, deploying ClickFix malware that tricks users into executing malicious scripts.</description><pubDate>Mon, 25 May 2026 13:16:58 GMT</pubDate><category>CVE-2026-26980</category><category>Ghost CMS</category><category>SQL Injection</category><category>ClickFix</category><category>Malware</category></item><item><title>CVE-2025-26980: Ghost CMS SQL Injection Exploited in ClickFix Campaign</title><link>https://runtimerebel.com/blog/cve-2025-26980-ghost-cms-sql-injection-exploited-in-clickfix-campaign</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2025-26980-ghost-cms-sql-injection-exploited-in-clickfix-campaign</guid><description>A critical SQL injection vulnerability in Ghost CMS (CVE-2025-26980) is being exploited to deliver ClickFix malware through malicious JavaScript injections.</description><pubDate>Sun, 24 May 2026 16:26:15 GMT</pubDate><category>Ghost CMS</category><category>CVE-2025-26980</category><category>SQL Injection</category><category>ClickFix</category><category>Malware Campaign</category></item><item><title>CVE-2026-9082: Drupal Core SQL Injection Added to CISA KEV Catalog</title><link>https://runtimerebel.com/blog/cve-2026-9082-drupal-core-sql-injection-added-to-cisa-kev-catalog</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-9082-drupal-core-sql-injection-added-to-cisa-kev-catalog</guid><description>CISA warns of active exploitation of CVE-2026-9082, a critical SQL injection vulnerability in Drupal Core. Organizations must patch to prevent data exposure.</description><pubDate>Sat, 23 May 2026 08:47:48 GMT</pubDate><category>CVE-2026-9082</category><category>Drupal</category><category>SQL Injection</category><category>CISA KEV</category><category>CMS Security</category></item><item><title>CVE-2026-9082: Drupal Core SQL Injection Under Active Exploitation</title><link>https://runtimerebel.com/blog/cve-2026-9082-drupal-core-sql-injection-under-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-9082-drupal-core-sql-injection-under-active-exploitation</guid><description>CISA adds CVE-2026-9082, a critical Drupal Core SQL Injection vulnerability, to KEV Catalog due to active exploitation. Immediate patching required for all organizations.</description><pubDate>Sat, 23 May 2026 00:55:48 GMT</pubDate><category>CVE-2026-9082</category><category>Drupal</category><category>SQL Injection</category><category>CISA KEV Catalog</category><category>Active Exploitation</category></item><item><title>CVE-2024-2123 &amp; CVE-2024-2510: Avada Builder Patch Guidance</title><link>https://runtimerebel.com/blog/cve-2024-2123-cve-2024-2510-avada-builder-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-2123-cve-2024-2510-avada-builder-patch-guidance</guid><description>Critical flaws in Avada Builder WordPress plugin (CVE-2024-2123, CVE-2024-2510) allow for credential theft and LFI. Immediate update to version 3.11.7 required.</description><pubDate>Fri, 15 May 2026 16:41:00 GMT</pubDate><category>CVE-2024-2123</category><category>CVE-2024-2510</category><category>Avada Builder</category><category>WordPress Security</category><category>SQL Injection</category></item><item><title>CVE-2026-42208: BerriAI LiteLLM SQLi Exploitation — Patch Now</title><link>https://runtimerebel.com/blog/cve-2026-42208-berriai-litellm-sqli-exploitation-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-42208-berriai-litellm-sqli-exploitation-patch-now</guid><description>CISA adds CVE-2026-42208, a critical SQL injection vulnerability in BerriAI LiteLLM, to KEV catalog. Active exploitation confirmed.</description><pubDate>Fri, 08 May 2026 20:28:32 GMT</pubDate><category>CVE-2026-42208</category><category>BerriAI LiteLLM</category><category>SQL Injection</category><category>CISA KEV</category><category>Vulnerability Management</category></item><item><title>CVE-2026-42208: Active Exploitation of LiteLLM SQL Injection</title><link>https://runtimerebel.com/blog/cve-2026-42208-active-exploitation-of-litellm-sql-injection</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-42208-active-exploitation-of-litellm-sql-injection</guid><description>Attackers are actively exploiting CVE-2026-42208, a critical SQL injection flaw in LiteLLM, within 36 hours of disclosure. Patch to prevent database compromise.</description><pubDate>Wed, 29 Apr 2026 08:52:44 GMT</pubDate><category>CVE-2026-42208</category><category>LiteLLM</category><category>BerriAI</category><category>SQL Injection</category></item><item><title>CVE-2026-42208: LiteLLM Pre-Auth SQLi Actively Exploited – Patch Now</title><link>https://runtimerebel.com/blog/cve-2026-42208-litellm-pre-auth-sqli-actively-exploited-patch-now</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-42208-litellm-pre-auth-sqli-actively-exploited-patch-now</guid><description>Hackers are actively exploiting CVE-2026-42208, a critical pre-authentication SQL injection vulnerability in LiteLLM, to access sensitive data.</description><pubDate>Wed, 29 Apr 2026 00:51:59 GMT</pubDate><category>CVE-2026-42208</category><category>LiteLLM</category><category>SQL Injection</category><category>Pre Authentication</category><category>LLM Gateway</category></item><item><title>Critical RCE Threats: Confluence OGNL &amp; Exchange Server Patching</title><link>https://runtimerebel.com/blog/critical-rce-threats-confluence-ognl-exchange-server-patching</link><guid isPermaLink="true">https://runtimerebel.com/blog/critical-rce-threats-confluence-ognl-exchange-server-patching</guid><description>Runtime Rebel analyzes critical RCE vulnerabilities affecting Atlassian Confluence and Microsoft Exchange Server, alongside a high-severity SQLi in WP Reset.</description><pubDate>Thu, 23 Apr 2026 05:06:17 GMT</pubDate><category>Atlassian Confluence</category><category>OGNL Injection</category><category>RCE</category><category>Microsoft Exchange Server</category><category>Patch Tuesday</category><category>WordPress</category><category>WP Reset</category><category>SQL Injection</category><category>Vulnerability</category></item><item><title>SAP CVE-2026-27681: Critical SQL Injection Vulnerability Patch Guidance</title><link>https://runtimerebel.com/blog/sap-cve-2026-27681-critical-sql-injection-vulnerability-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/sap-cve-2026-27681-critical-sql-injection-vulnerability-patch-guidance</guid><description>April Patch Tuesday addresses a critical 9.9 CVSS SQL injection vulnerability in SAP Business Warehouse and updates for Microsoft, Adobe, and Fortinet.</description><pubDate>Wed, 15 Apr 2026 16:28:18 GMT</pubDate><category>CVE-2026-27681</category><category>SAP</category><category>Patch Tuesday</category><category>SQL Injection</category><category>Microsoft</category><category>Fortinet</category></item><item><title>CISA KEV Update: Fortinet FortiClient EMS CVE-2026-21643 Under Attack</title><link>https://runtimerebel.com/blog/cisa-kev-update-fortinet-forticlient-ems-cve-2026-21643-under-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-update-fortinet-forticlient-ems-cve-2026-21643-under-attack</guid><description>CISA adds six flaws to the KEV catalog, including a critical unauthenticated SQL injection in Fortinet FortiClient EMS (CVE-2026-21643). Patch immediately.</description><pubDate>Tue, 14 Apr 2026 08:40:46 GMT</pubDate><category>Fortinet</category><category>CVE-2026-21643</category><category>CISA KEV</category><category>SQL Injection</category><category>FortiClient EMS</category></item><item><title>CISA KEV Update: Exchange Server, Adobe, MS Windows Exploits</title><link>https://runtimerebel.com/blog/cisa-kev-update-exchange-server-adobe-ms-windows-exploits</link><guid isPermaLink="true">https://runtimerebel.com/blog/cisa-kev-update-exchange-server-adobe-ms-windows-exploits</guid><description>CISA adds seven vulnerabilities, including critical Microsoft Exchange Server deserialization, to its Known Exploited Vulnerabilities Catalog, urging immediate…</description><pubDate>Tue, 14 Apr 2026 00:47:03 GMT</pubDate><category>CVE-2012-1854</category><category>CVE-2020-9715</category><category>CVE-2023-21529</category><category>CVE-2023-36424</category><category>CVE-2025-60710</category><category>CVE-2026-21643</category><category>CVE-2026-34621</category><category>Microsoft Exchange Server</category><category>Adobe Acrobat</category><category>Microsoft Windows</category><category>Fortinet</category><category>CISA</category><category>KEV Catalog</category><category>Deserialization</category><category>Use After Free</category><category>SQL Injection</category></item><item><title>FortiClient EMS RCE via CVE-2023-48788 — Patch Guidance</title><link>https://runtimerebel.com/blog/forticlient-ems-rce-via-cve-2023-48788-patch-guidance</link><guid isPermaLink="true">https://runtimerebel.com/blog/forticlient-ems-rce-via-cve-2023-48788-patch-guidance</guid><description>CISA mandates federal agencies patch the critical FortiClient EMS SQL injection flaw, CVE-2023-48788, which allows unauthenticated remote code execution.</description><pubDate>Mon, 06 Apr 2026 16:21:26 GMT</pubDate><category>CVE-2023-48788</category><category>Fortinet</category><category>CISA</category><category>RCE</category><category>SQL Injection</category></item><item><title>Fortinet FortiClient EMS Critical SQLi Flaw Under Active Exploitation</title><link>https://runtimerebel.com/blog/fortinet-forticlient-ems-critical-sqli-flaw-under-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/fortinet-forticlient-ems-critical-sqli-flaw-under-active-exploitation</guid><description>Critical SQL injection in FortiClient EMS allows unauthenticated remote code execution. Active exploitation detected, immediate patching required.</description><pubDate>Tue, 31 Mar 2026 12:31:11 GMT</pubDate><category>Fortinet</category><category>FortiClient EMS</category><category>SQL Injection</category><category>RCE</category><category>Exploitation</category></item><item><title>CVE-2023-48788: FortiClient EMS RCE via SQL Injection Exploit</title><link>https://runtimerebel.com/blog/cve-2023-48788-forticlient-ems-rce-via-sql-injection-exploit</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2023-48788-forticlient-ems-rce-via-sql-injection-exploit</guid><description>Exploitation of a critical RCE vulnerability (CVE-2023-48788) in Fortinet FortiClient EMS has been confirmed. Learn how to detect and mitigate this threat.</description><pubDate>Mon, 30 Mar 2026 08:40:09 GMT</pubDate><category>CVE-2023-48788</category><category>Fortinet</category><category>FortiClient EMS</category><category>RCE</category><category>SQL Injection</category></item><item><title>Elementor Ally Plugin SQLi: Unauthenticated Data Theft Risk</title><link>https://runtimerebel.com/blog/elementor-ally-plugin-sqli-unauthenticated-data-theft-risk</link><guid isPermaLink="true">https://runtimerebel.com/blog/elementor-ally-plugin-sqli-unauthenticated-data-theft-risk</guid><description>An unauthenticated SQL injection vulnerability in the Elementor Ally WordPress plugin affects over 400,000 sites, risking sensitive data exposure.</description><pubDate>Wed, 11 Mar 2026 20:13:50 GMT</pubDate><category>SQL Injection</category><category>WordPress</category><category>Elementor Ally</category><category>Web Accessibility</category><category>Data Theft</category></item><item><title>LeakyLooker: Google Looker Studio Cross-Tenant SQL Vulnerabilities</title><link>https://runtimerebel.com/blog/leakylooker-google-looker-studio-cross-tenant-sql-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/leakylooker-google-looker-studio-cross-tenant-sql-vulnerabilities</guid><description>Discover how nine vulnerabilities in Google Looker Studio, dubbed LeakyLooker, allowed cross-tenant SQL queries and sensitive data exfiltration in GCP.</description><pubDate>Tue, 10 Mar 2026 16:27:19 GMT</pubDate><category>Google Looker Studio</category><category>LeakyLooker</category><category>GCP Security</category><category>SQL Injection</category><category>Cross Tenant</category><category>Tenable</category></item><item><title>Ivanti EPM CVE-2024-29824 Exploited: Technical Analysis and Patching</title><link>https://runtimerebel.com/blog/ivanti-epm-cve-2024-29824-exploited-technical-analysis-and-patching</link><guid isPermaLink="true">https://runtimerebel.com/blog/ivanti-epm-cve-2024-29824-exploited-technical-analysis-and-patching</guid><description>CISA warns of active exploitation of CVE-2024-29824 in Ivanti Endpoint Manager. Secure your Core server with our technical analysis and mitigation guide.</description><pubDate>Tue, 10 Mar 2026 12:19:43 GMT</pubDate><category>CVE-2024-29824</category><category>Ivanti</category><category>Endpoint Manager</category><category>CISA KEV</category><category>RCE</category><category>SQL Injection</category></item><item><title>Critical RCE Flaws in InSAT MasterSCADA BUK-TS Affect ICS</title><link>https://runtimerebel.com/blog/critical-rce-flaws-in-insat-masterscada-buk-ts-affect-ics</link><guid isPermaLink="true">https://runtimerebel.com/blog/critical-rce-flaws-in-insat-masterscada-buk-ts-affect-ics</guid><description>Two critical vulnerabilities (SQLi, OS Command Injection) in InSAT MasterSCADA BUK-TS lead to remote code execution, impacting critical infrastructure sectors globally.</description><pubDate>Wed, 25 Feb 2026 04:43:53 GMT</pubDate><category>CVE-2026-21410</category><category>CVE-2026-22553</category><category>InSAT MasterSCADA BUK TS</category><category>SQL Injection</category><category>OS Command Injection</category><category>RCE</category><category>ICS</category><category>SCADA</category><category>Critical Manufacturing</category><category>Energy</category><category>Water and Wastewater</category></item></channel></rss>