
⚠️ HIGH — CVE-2026-46446 SOGo before 5.12.7, when PostgreSQL or MariaDB is used, and cleartext passwords are stored, allows SQL injection. This … CVSS 7.1 Full analysis → https://sec.kaitan.id/cves/CVE-2026-46446 #PostgreSQL #CyberSecurity #InfoSec
Post summary
The post announces CVE-2026-46446, a high‑severity SQL injection flaw in SOGo when using PostgreSQL or MariaDB with cleartext passwords, but provides no PoC, exploit, or patch details.
