GHSA-vh7m-4w88-p24fCriticalCVSS 9.1

SQL Injection vulnerability in ClickHouse Server Versions <= 26.3.9.8 allows a remote attacker to...

Published
July 29, 2026
Last Modified
July 29, 2026

🔗 CVE IDs covered (1)

📋 Description

SQL Injection vulnerability in ClickHouse Server Versions <= 26.3.9.8 allows a remote attacker to execute arbitrary code via the create dictionaries function.

🔗 References (4)