CVE-2026-22306Disclosure

LOWCVSS 10.0 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Download of code without integrity check, inclusion of functionality from untrusted control sphere, and cleartext transmission of sensitive information vulnerability in Ozols Grupa OZOLS on Windows caused by an abandoned auto-update domain. Affected component: the automatic update channel - OzolsSQL client update path, the <db>_update SQL Server Agent job (@subsystem = N'ActiveScripting') and serv_update.vbs. This issue affects OZOLS: before 1.1.1233.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-319CWE-494CWE-829

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-08-24: 1Technical Details · 2026-08-24: 108-24
Signal classification1 categories
Disclosure
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • SecAlerts@SecAlertsCo
    Disclosure

    🔄 OZOLS ERP's auto-update channel downloads code with NO integrity check over cleartext — CVSS 10. CVE-2026-22306 enables full RCE via untrusted update injection on Windows. If you run OZOLS, isolate it now. #cybersecurity #vulnerabilities #ciso https://secalerts.co/vulnerability/CVE-2026-22306?utm_campaign=x https://t.co/kzP7KjR9OI

    Post summary

    CVE‑2026‑22306 is a high‑severity (CVSS 10) vulnerability in OZOLS ERP’s auto‑update channel, allowing full remote code execution via untrusted update injection on Windows, with no patch or exploit information provided.

    0000076
    882 followersView on X

Explore more