← Back

E2

e2

Vendor: Blogengine • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Blogengine
1E2
May 6, 2026
Jul 24, 2014
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in E2 before 2.4 (2845) allows remote attackers to execute arbitrary SQL commands via the note-id parameter to @actions/comment-process.