
🟠 CVE-2026-32137 - High Dataease is an open source data visualization analysis tool. Prior to 2.10.20, The table parameter for /de2api/datasource/previewData is directly concatenated into the SQL statement without a... https://www.thehackerwire.com/vulnerability/CVE-2026-32137/ https://t.co/BWV5bdREHm
Post summary
The tweet discloses that CVE-2026-32137 is a SQL injection flaw in Dataease's preview API before version 2.10.20.



