HomeCVE Intelligence › CVE-2026-2395
CVSS 9.8 CRITICAL Security Vulnerability

CVE-2026-2395: Improper neutralization of special elements used in an SQL command ('SQL injection') vuln…

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Trkiye Informatics Technology Inc. No Code Platform allows SQL Injection. This issue affects No Code Platform:…

9.8CVSS Score
CRITICALSeverity
NOCISA KEV
0.5%EPSS Score
Security VulnerabilityImpact Type

📋 Vulnerability Details

CVE IDCVE-2026-2395
VendorUnknown Vendor
Affected ProductUnknown Product
Vulnerability TypeSecurity Vulnerability
CVSS Score9.8 (CRITICAL)
EPSS Score0.5% probability of exploitation in the next 30 days
Actively Exploited❌ No known exploitation
Patch StatusPending Vendor Disclosure
Reported ByCYBERDUDEBIVASH SENTINEL APEX Intelligence (via sentinel_apex)

🔬 Technical Analysis

Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Xpoda Trkiye Informatics Technology Inc. No Code Platform allows SQL Injection.

This issue affects No Code Platform: from 4.3.1.0 through 20260722.NOTE: The vendor was contacted... [Full analysis available on Pro]

🎯 Known Indicators of Compromise

{"type":"ipv4","value":"4.3.1.0","confidence_score":0.88,"first_seen":"2026-07-24","source_count":1}
⚡ DETECTION RULES AVAILABLE

Get CVE-2026-2395 Detection Pack

Sigma rules, YARA signatures, IOC table, and SIEM queries for Splunk, Elastic, Sentinel, and Chronicle — deployable in 5 minutes.

✓ Sigma Rules ✓ YARA Pack ✓ IOC Table ✓ SIEM Queries
🛡️ Get Detection Pack → 🔌 Access via API →

🔗 Related Intelligence