CRITICAL 9.8 CVE-2026-75330 Published 26 Aug 2026

Super-Diamond-Server SQL Injection

Worried this affects one of your servers?

The front-end interface of Super-Diamond-Server <= 1.3.3 is vulnerable to SQL injection.

The module parameter in the /superdiamond/preview/{projectCode}/{module}/{type} URL is directly concatenated into the SQL IN clause without being parameterized and bound.

Reference: CVE-2026-75330 on NVD

← Back to Security News