Skip to main content
Loading…
    CVE-2026-41422 — Daptin is a GraphQL/JSON-API headless CMS. Prior to version 0.11.4, the /aggregate/:typename endpoint accepted column and group query parameters that were passed verbatim to goqu.L() — a raw SQL liter — CVE Database · The Intelligence Room