CVE-2025-55472 | Tirreno 0.9.5 API Endpoint /admin/loadUsers columns[0][data] sql injection (EUVD-2025-26417)
A vulnerability categorized as critical has been discovered in Tirreno 0.9.5. The affected element is an unknown function of the file /admin/loadUsers of the component API Endpoint. The manipulation of the argument columns[0][data] results in sql injection.
This vulnerability was named CVE-2025-55472. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.