Known Vulnerabilities for SQLBot by Dataease
Listed below are 6 of the newest known vulnerabilities associated with "SQLBot" by "Dataease".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-93660 json | SQLBot through 1.10.1 fails to verify dashboard ownership in update_resource and update_canvas endpoints, allowing authentica... | Not Provided | 2026-09-18 | 2026-09-22 |
| CVE-2026-72743 json | SQLBot through 1.10.0, fixed in commit c3f40a5, contains a stored cross-site scripting vulnerability in the SQText dashboard ... | Not Provided | 2026-08-10 | 2026-08-17 |
| CVE-2026-53557 json | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, an authenticated user can... | Not Provided | 2026-09-17 | 2026-09-22 |
| CVE-2026-53556 json | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/datasour... | Not Provided | 2026-09-17 | 2026-09-18 |
| CVE-2026-53555 json | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, an authenticated uploader... | Not Provided | 2026-09-17 | 2026-09-18 |
| CVE-2026-53554 json | SQLBot is an intelligent Text-to-SQL system based on large language models and RAG. Prior to 1.9.0, the POST /api/v1/datasour... | Not Provided | 2026-09-17 | 2026-09-18 |