Executive brief
Daptin fuzzy search injects unvalidated column name into raw SQL in github.com/daptin/daptin
Affected products
- Go github.com/daptin/daptin
Junglewise Threat Intelligence
CVE-2026-44349 · Severity: medium · CVSS 4 · Published 2026-06-25
Technologies: github.com/daptin/daptin (Go). Vendors: Go.
Daptin fuzzy search injects unvalidated column name into raw SQL in github.com/daptin/daptin