Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 19 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Datadoghq
Datadoghq vector |
|
| Vendors & Products |
Datadoghq
Datadoghq vector |
Thu, 18 Jun 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SQL Injection in Datadog Vector Set URI Query Parameter Exposes Sensitive Data |
Wed, 17 Jun 2026 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SQL Injection in Datadog Vector Set URI Query Parameter Exposes Sensitive Data |
Tue, 16 Jun 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
cvssV3_1
|
Mon, 15 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Datadog, Inc Vector v0.54.0 was discovered to contain a SQL injection vulnerability in the set_uri_query parameter in the KeyPartitioner::partition function. This vulnerability allows attackers to access sensitive database information via crafted SQL statements. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-16T13:45:36.459Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-39196
Updated: 2026-06-16T13:45:13.315Z
Status : Deferred
Published: 2026-06-15T20:16:27.567
Modified: 2026-06-16T15:50:58.757
Link: CVE-2026-39196
No data.
OpenCVE Enrichment
Updated: 2026-06-19T09:35:57Z