Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-8307: Mediküm Web: Unsecured SQL Commands Allow Unauthorized Access

CVE-2026-8307 CVE-2026-8307
Summary

Mediküm Web, a software used by Webbeyaz Web Design, has a security flaw that allows hackers to manipulate database commands. This could allow unauthorized access to sensitive information. Since the software is no longer supported, it's essential to consider replacing it with a more secure alternative.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
webbeyaz web design mediküm web <= 08072026
Original title
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Webbeyaz Web Design Mediküm Web allows SQL Injection. This issue affects Mediküm Web: through ...
Original description
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Webbeyaz Web Design Mediküm Web allows SQL Injection.

This issue affects Mediküm Web: through 08072026. NOTE: The vendor was contacted and it was learned that the product is not supported.
mitre CVSS3.1 9.8
Vulnerability type
CWE-89 SQL Injection
Published: 8 Jul 2026 · Updated: 23 Jul 2026 · First seen: 8 Jul 2026