Junglewise Threat Intelligence

CVE-2026-41422: GO-2026-5640 - Daptin: SQL injection via unvalidated goqu.L() calls in aggregate API in github.com/daptin/daptin

CVE-2026-41422 · Severity: low · CVSS 3.1 · Published 2026-06-25

Technologies: github.com/daptin/daptin (Go). Vendors: Go.

Executive brief

Daptin: SQL injection via unvalidated goqu.L() calls in aggregate API in github.com/daptin/daptin

Affected products

  • Go github.com/daptin/daptin

Related threats