CVE-2026-28399 | NocoDB up to 0.301.2 unit sql injection
A vulnerability labeled as critical has been found in NocoDB up to 0.301.2. Affected by this vulnerability is an unknown functionality. The manipulation of the argument unit results in sql injection.
This vulnerability is cataloged as CVE-2026-28399. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.