CVE-2026-34386 | fleetdm fleet up to 4.80.x API Call sql injection (GHSA-9p23-p2m4-2r4m)
A vulnerability was found in fleetdm fleet up to 4.80.x. It has been rated as critical. This impacts an unknown function of the component API Call Handler. The manipulation leads to sql injection.
This vulnerability is documented as CVE-2026-34386. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.