CVE-2026-3105
Last modified
CVE-2026-3105 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. SummaryThis advisory addresses a SQL injection vulnerability in the API endpoint used for retrieving contact activities. A vulnerability exists in the query construction for the Contact Activity timeline where the parameter responsible for determining the sort direction was not strictly validated against an allowlist, potentially allowing authenticated users to inject arbitrary SQL commands via the API. MitigationPlease update to 4.4.19, 5.2.10, 6.0.8, 7.0.1 or later. WorkaroundsNone. ReferencesIf you have any questions or comments about this advisory: Email us at security@mautic.org. EPSS estimates a 0.29% chance of exploitation in the next 30 days.
Description
SummaryThis advisory addresses a SQL injection vulnerability in the API endpoint used for retrieving contact activities. A vulnerability exists in the query construction for the Contact Activity timeline where the parameter responsible for determining the sort direction was not strictly validated against an allowlist, potentially allowing authenticated users to inject arbitrary SQL commands via the API. MitigationPlease update to 4.4.19, 5.2.10, 6.0.8, 7.0.1 or later. WorkaroundsNone. ReferencesIf you have any questions or comments about this advisory: Email us at security@mautic.org
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Acquia | Mautic | >= 2.10.0, < 4.4.19 |
| Acquia | Mautic | >= 5.0.0, < 5.2.10 |
| Acquia | Mautic | >= 6.0.0, < 6.0.8 |
| Acquia | Mautic | >= 7.0.0, < 7.0.1 |
References
- https://github.com/mautic/mautic/security/advisories/GHSA-r5j5-q42h-fc93Mitigation, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-3105?
How severe is CVE-2026-3105?
How do I fix CVE-2026-3105?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-31027TOTOlink A3600R v5.9c.4959 contains a buffer overflow vulner…9.8
- CVE-2026-3103A logic error in the remove_password() function in Checkmk G…5.4
- CVE-2026-3104A specially crafted domain can be used to cause a memory lea…7.5
- CVE-2026-31040A vulnerability was identified in stata-mcp prior to v1.13.0…9.8
- CVE-2026-31048An issue in the <code>pickle</code> protocol of Pyro v3.x al…9.8
- CVE-2026-31049An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a re…9.8
- CVE-2026-31050Cross Site Scripting vulnerability in Hostbill v.2025-11-24 …4.9
- CVE-2026-31051An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a re…3.8
- CVE-2026-31052An issue in Hostbill v.2025-11-24 and 2025-12-01 allows a re…5.3
- CVE-2026-31053A double free vulnerability exists in librz/bin/format/le/le…6.2
- CVE-2026-31058UTT Aggressive HiPER 1200GW v2.5.3-170306 was discovered to …4.5
- CVE-2026-31059A remote command execution (RCE) vulnerability in the /gofor…9.8
Are you affected by CVE-2026-3105?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
