CVE-2026-33991 | LabRedesCefetRJ WeGIA up to 3.6.6 deletar_tag.php deletar_tag $_REQUEST sql injection (EUVD-2026-16884)
A vulnerability, which was classified as critical, has been found in LabRedesCefetRJ WeGIA up to 3.6.6. This issue affects the function deletar_tag of the file html/socio/sistema/deletar_tag.php. This manipulation of the argument $_REQUEST causes sql injection.
This vulnerability is handled as CVE-2026-33991. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.