Security Advisory

CVE-2026-25371

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-03-25 16:14:45
Last updated 2026-04-28 16:14:56
Assigner Patchstack
CVSS score 9.3
State PUBLISHED

Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in King-Theme Lumise Product Designer lumise allows Blind SQL Injection.This issue affects Lumise Product Designer: from n/a through < 2.0.9.