
CVE-2026-32866 OPEXUS eComplaint and eCASE before 10.2.0.0 do not correctly sanitize the contents of first and last name fields in a user profile. An authenticated attacker can inje… https://www.cve.org/CVERecord?id=CVE-2026-32866
Post summary
A new CVE describes unsanitized name fields in OPEXUS eComplaint and eCASE that allow injection for authenticated users.


