Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces CVE‑2026‑31844, detailing a SQL injection flaw in the Koha staff interface’s suggestion endpoint through the displayby parameter.
CVE@CVEnewDisclosure
The post discloses an authenticated SQL injection flaw in Koha’s staff interface, identifying the vulnerable endpoint and CWE, but it does not provide any PoC, exploit, or patch information.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces a high‑severity authenticated SQL injection vulnerability (CWE‑89) in the Koha staff interface, providing endpoint details but no PoC, exploit, or mitigation.
CVEFind.com@CveFindComDisclosure
The post announces a high‑severity SQL injection vulnerability (CVE-2026-31844) in Koha's suggestion.pl that allows low‑privileged authenticated users to retrieve sensitive data.
CyberDudeBivash® | Global Cybersecurity Company@cyberbivashDisclosure
An authenticated SQL injection vulnerability (CVE-2026-31844) in the 'displayby' parameter of Koha indicates a new threat, with technical details provided but no PoC or evidence of exploitation.