CVE-2026-42031
Published: 13 May 2026
Summary
CVE-2026-42031 is a critical-severity SQL Injection (CWE-89) vulnerability in Okfn Ckan. Its CVSS base score is 9.8 (Critical).
Operationally, ranked in the top 7.3% of CVEs by exploit likelihood; it is not currently listed in the CISA KEV catalog.
Threat & Defense Details
Likely Mitigating ControlsAI
Per-CVE control mapping for this CVE has not run yet; the list below is derived from the weakness types (CWEs) cited in the NVD entry.
NVD Description
CKAN is an open-source DMS (data management system) for powering data hubs and data portals. Prior to 2.10.10 and 2.11.5, a vulnerability in datastore_search_sql allowed attackers to inject SQL in order to gain access to private resources and PostgreSQL system…
more
information This vulnerability is fixed in 2.10.10 and 2.11.5.
Deeper analysisAI
Automated synthesis unavailable for this CVE.
Details
- CWE(s)