multi-tenant_erp_system vulnerabilities
CVEs whose affected-version data names the multi-tenant_erp_system package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
3 CVEsRSS
CVE-2026-107104Critical· 9.3This vulnerability exists in the ERP system due to unsafe deserialization of user controlled data in the affected functionality
This vulnerability exists in the ERP system due to unsafe deserialization of user controlled data in the affected functionality. An unauthenticated remote attacker could exploit this vulnerability by supplying specially crafted data to t…
CVE-2026-107103Critical· 9.3This vulnerability exists in the ERP system due to insufficient validation and parameterization of user supplied input in an API endpoint
This vulnerability exists in the ERP system due to insufficient validation and parameterization of user supplied input in an API endpoint. An unauthenticated remote attacker could exploit this vulnerability by supplying specially crafted…
CVE-2026-107102Critical· 9.3This vulnerability exists in the ERP system due to improper validation of payment callback parameters and inadequate authentication controls in API endpoint
This vulnerability exists in the ERP system due to improper validation of payment callback parameters and inadequate authentication controls in API endpoint. An unauthenticated remote attacker could exploit this vulnerability by manipula…