CVE-2026-32593Disclosure

LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

0.0/ 10 priority

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 4 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-08-27)
  • 4 total mentions across 3 days

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-03-15: 1Mentions · 2026-08-26: 1Mentions · 2026-08-27: 2Technical Details · 2026-08-26: 1Technical Details · 2026-08-27: 203-1508-2608-27
Signal classification1 categories
Disclosure
4100.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-151
Disclosure1
2026-08-261
Disclosure1
2026-08-272
Disclosure2
Full discourse4 posts
  • Mounir | مُنِير@__M9nx
    Disclosure

    Recently I discovered CVE-2026-32593 while testing a Winter CMS plugin. For more info, check this write-up: https://m9nx.me/blog/winter-cms-sql-injection/ #infosec #bugbounty #cybersecurity #websecurity #appsec #cve #securityresearch #pentesting #bugbountytips https://t.co/RdxvJ4mFce

    Post summary

    The tweet announces the discovery of CVE‑2026‑32593 in a Winter CMS plugin and points to an external write‑up for further details.

    00020122
    199 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-32593 Authenticated SQL Injection in Winter CMS Backend Filter Widget Allows Full Database Read Access https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-32593

    Post summary

    CVE-2026-32593 reveals an authenticated SQL injection flaw in Winter CMS that grants full database read access via the backend filter widget.

    00000115
    4.1K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-32593 Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the backend Filter widget is vulnerable to SQL i… https://www.cve.org/CVERecord?id=CVE-2026-32593 ----- Traducción: CVE-2026-32593 Win… https://infoflow.cloud`

    Post summary

    The text announces CVE‑2026‑32593, a SQL injection flaw in Winter CMS (v1.2.12 and earlier), with technical details but without a PoC, exploit code, patch, or evidence of active exploitation.

    0000037
    102 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-32593 Winter CMS is a content management system built on the Laravel PHP framework. In versions up to and including 1.2.12, the backend Filter widget is vulnerable to SQL i… https://www.cve.org/CVERecord?id=CVE-2026-32593

    Post summary

    A new SQL injection vulnerability (CVE-2026-32593) was disclosed affecting Winter CMS Filter widget versions up to 1.2.12.

    000001.4K
    58.0K followersView on X

Explore more