Vulnerability Description
A SQL injection vulnerability exists in the Coverity Connect SOAP API for versions between 2024.6.0 and 2026.3.0 (inclusive). A malicious, authenticated threat actor who sends a specially crafted payload can achieve full read access to database contents and other unauthorized commands.
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-8339?
CVE-2026-8339 is a documented vulnerability. A SQL injection vulnerability exists in the Coverity Connect SOAP API for versions between 2024.6.0 and 2026.3.0 (inclusive). A malicious, authenticated threat actor who sends a specially crafted payl...
How severe is CVE-2026-8339?
CVSS scoring is not yet available for CVE-2026-8339. Check NVD for updates.
Is there a patch for CVE-2026-8339?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.