
‼️ CVE-2026-24418: OpenSTAManager v2.9.8 and earlier contain a critical Error-Based SQL Injection vulnerability in the bulk operations handler for the Scadenzario (Payment Schedule) module. GitHub: https://github.com/BridgerAlderson/CVE-2026-24418 https://t.co/anvPRGR5L9
Post summary
The tweet announces CVE-2026‑24418 as a critical error‑based SQL injection in OpenSTAManager v2.9.8 and earlier, and provides a GitHub link hosting a proof‑of‑concept exploit.

