Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
5.3

Delinea Cloud Suite: SQL Attack Risk Through Malformed Input

CVE-2025-12812
Summary

Delinea's Cloud Suite and Privileged Access Service contain a security weakness that could allow an attacker to inject malicious SQL code. This could lead to unauthorized access to sensitive data or system compromise. Update to version 25.1 or later to fix this issue.

Original title
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in Delinea Inc. Cloud Suite and Privileged Access Service. Remediation: This issue is fixed in Cloud Suite: 25.1
Original description
Improper Neutralization of Special Elements used in an SQL Command
('SQL Injection') in Delinea Inc. Cloud Suite and Privileged Access Service.


Remediation: This issue is fixed in Cloud Suite: 25.1
nvd CVSS4.0 5.3
Vulnerability type
CWE-89 SQL Injection
Published: 18 Feb 2026 · Updated: 11 Mar 2026 · First seen: 6 Mar 2026