CVE-2026-107103

LOWCVSS 9.3 · CRITICAL

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

This vulnerability exists in the ERP system due to insufficient validation and parameterization of user supplied input in an API endpoint. An unauthenticated remote attacker could exploit this vulnerability by supplying specially crafted input to the vulnerable endpoint. Successful exploitation of this vulnerability could allow the attacker to perform SQL injection attacks on the targeted system.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-89

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-10-07: 210-07
Referenced assets1 URL
Full discourse2 posts
  • nisarga@ni5arga

    CVE-2026-107102 CVE-2026-107103 CVE-2026-107104 got credited with six-digit CVEs 😳

    14415456322.4K
    29.1K followersView on X
  • PJ@Npj8448

    CVE-2026-107103: This vulnerability exists in the ERP system due to insufficient validation and parameterization of user suppli https://pranithjain.qzz.io/blog/trending-trending-cve-2026-107103-cve-2026-107103-this-vulnerability-exist

    0000030
    84 followersView on X

Explore more