Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Trkiye Informatics Technology Inc. No Code Platform allows SQL Injection. This issue affects No Code Platform:…
| CVE ID | CVE-2026-2395 |
| Vendor | Unknown Vendor |
| Affected Product | Unknown Product |
| Vulnerability Type | Security Vulnerability |
| CVSS Score | 9.8 (CRITICAL) |
| EPSS Score | 0.5% probability of exploitation in the next 30 days |
| Actively Exploited | ❌ No known exploitation |
| Patch Status | Pending Vendor Disclosure |
| Reported By | CYBERDUDEBIVASH SENTINEL APEX Intelligence (via sentinel_apex) |
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Trkiye Informatics Technology Inc. No Code Platform allows SQL Injection.
This issue affects No Code Platform: from 4.3.1.0 through 20260722.NOTE: The vendor was contacted... [Full analysis available on Pro]
Sigma rules, YARA signatures, IOC table, and SIEM queries for Splunk, Elastic, Sentinel, and Chronicle — deployable in 5 minutes.