CVE-2025-45868
Severity CVSS v4.0:
Pending analysis
Type:
CWE-89
SQL Injection
Publication date:
16/07/2026
Last modified:
20/07/2026
Description
LogicalDOC Enterprise up to and for v9.1.1 is vulnerable to blind SQL injection in the ComparisonServlet component, allowing authenticated user to manipulate SQL queries via crafted input.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH



