CVE-2026-52745 | 1Panel-dev CordysCRM up to 1.6.x /account-pool/page sort.name sql injection
A vulnerability, which was classified as problematic, was found in 1Panel-dev CordysCRM up to 1.6.x. The impacted element is an unknown function of the file /account-pool/page. The manipulation of the argument sort.name results in sql injection.
This vulnerability is identified as CVE-2026-52745. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.