---
id: CVE-2025-8536
title: A SQL injection vulnerability has been identified in DobryCMS
summary: >-
  A SQL injection vulnerability has been identified in DobryCMS. Improper
  neutralization of input provided by user into language functionality allows
  for SQL Injection attacks.


  This issue affects older branches of this software.
severity: none
cwe:
  - CWE-89
published: '2025-10-24'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T11:10:00.250'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-8536'
references:
  - url: 'https://cert.pl/posts/2025/10/CVE-2025-8536'
    label: cvd@cert.pl
  - url: 'https://studiofabryka.pl/systemy_cms.html'
    label: cvd@cert.pl
tags:
  - nvd
epss: 0.00301
epssPercentile: 0.20955
ingestedAt: '2026-10-08T11:31:27.575Z'
---

## Overview

A SQL injection vulnerability has been identified in DobryCMS. Improper neutralization of input provided by user into language functionality allows for SQL Injection attacks.

This issue affects older branches of this software.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
