Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
8.6
Tumeva Prime News Software: SQL Injection Risk for User Data
CVE-2025-7631
Summary
Tumeva Prime News Software versions 1.0.1 and earlier are at risk of being hacked if malicious code is injected through user input. This could allow an attacker to access sensitive user information. Update to version 1.0.2 or later to fix this issue.
Original title
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tumeva Internet Technologies Software Information Advertising and Consulting Services Trade Ltd...
Original description
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tumeva Internet Technologies Software Information Advertising and Consulting Services Trade Ltd. Co. Tumeva Prime News Software allows SQL Injection.This issue affects Tumeva Prime News Software: from v.1.0.1 before v1.0.2.
nvd CVSS3.1
8.6
Vulnerability type
CWE-89
SQL Injection
Published: 17 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026