CVE-2026-22687

MEDIUM

WeKnora < 0.2.5 - SQL Injection via Prompt-Based Bypass

Title source: llm
STIX 2.1

Description

WeKnora is an LLM-powered framework designed for deep document understanding and semantic retrieval. Prior to version 0.2.5, after WeKnora enables the Agent service, it allows users to call the database query tool. Due to insufficient backend validation, an attacker can use prompt‑based bypass techniques to evade query restrictions and obtain sensitive information from the target server and database. This issue has been patched in version 0.2.5.

Scores

CVSS v3 5.6
EPSS 0.0035
EPSS Percentile 27.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-89
Status published
Products (2)
tencent/weknora < 0.2.5
Tencent/WeKnora 0 - 0.2.5Go
Published Jan 10, 2026
Tracked Since Feb 18, 2026