CVE-2026-16007EPSS p25.7%

CVE-2026-16007CVE-2026-16007

Description

AppFlowy's qcuiknote feature is affected by a SQL injection vulnerability. Authenticated users with access to the feature can inject arbitrary SQL to exfiltrate data in the underlying SQL database.

Scoring

EPSS0.34% probability of exploitation · percentile 25.7% · 2026-10-05T12:00:23Z
Last modified2026-09-09
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.