Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.3
Nestbyte Core: Data stolen from database due to SQL attack
CVE-2025-69308
Summary
The Nestbyte Core software has a security flaw that could allow an attacker to access sensitive data in the database without being detected. This means that unauthorized access to confidential information is possible. To fix this issue, update Nestbyte Core to a version higher than 1.2 to prevent potential data breaches.
Original title
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Nestbyte Core nestbyte-core allows Blind SQL Injection.This issue affects Nestbyte...
Original description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Nestbyte Core nestbyte-core allows Blind SQL Injection.This issue affects Nestbyte Core: from n/a through <= 1.2.
nvd CVSS3.1
9.3
Vulnerability type
CWE-89
SQL Injection
Published: 20 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026