CVE advisoryCRITICAL
CVE-2026-108474
JetBrains Exposed SQL Injection Vulnerability
Halo Surface Signal: 3 out of 5 — possibly public-facing.
A critical SQL injection vulnerability exists in the JetBrains Exposed library, potentially allowing unauthenticated attackers to manipulate database queries. If reachable, this could lead to unauthorized data access, modification, or denial of service. The risk depends on how the library is implemented and exposed in