Junglewise Threat Intelligence

CVE-2026-44349: GO-2026-5555 - Daptin fuzzy search injects unvalidated column name into raw SQL in github.com/daptin/daptin

CVE-2026-44349 · Severity: medium · CVSS 4 · Published 2026-06-25

Technologies: github.com/daptin/daptin (Go). Vendors: Go.

Executive brief

Daptin fuzzy search injects unvalidated column name into raw SQL in github.com/daptin/daptin

Affected products

  • Go github.com/daptin/daptin

Related threats