Security Advisory

CVE-2026-16007

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-08-15 05:21:17
Last updated 2026-08-17 19:47:38
Assigner PRJBLK
CVSS score 7.1
State PUBLISHED

Description

AppFlowy's qcuiknote feature is affected by a SQL injection vulnerability. Authenticated users with access to the feature can inject arbitrary SQL to exfiltrate data in the underlying SQL database.