Sploitus

CVE-2026-42031

2 known exploits for CVE-2026-42031

CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a vulnerability in datastore_search_sql allowed attackers to inject SQL in order to gain access to private resources and PostgreSQL system information This vulnerability is fixed in 2.10.10 and 2.11.5.

Affected products
Ckan
Okfn Ckan
< 2.10.10, 2.11.5
Fix
Available
CVSS 3.1
9.8 CRITICAL
EPSS
1.8% (77th percentile)
Weakness
CWE-89
NVD status
Analyzed
Published
2026-05-13
CVE-2026-42031 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2026-42031

Proof-of-concept code and exploit modules indexed by Sploitus