CVE-2026-80298: SQL Injection in HAVELSAN's Sef - AI Chatbot Platform
Published Oct 2, 2026
·Updated
Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in HAVELSAN Inc. Sef - AI Chatbot Platform allows SQL Injection.
This issue affects Sef - AI Chatbot Platform: before 2.1.
Affected Software
1 affected component
HAVELSAN Sef - AI Chatbot Platform<2.1
Event History
Oct 2, 2026
CVE Published
via MITRE·09:07 AM
Data Sourced
via MITRE·09:07 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments should be considered affected?
HAVELSAN Sef - AI Chatbot Platform versions before 2.1 are affected.
2
What level of access does an attacker need to exploit this issue?
The CVSS vector indicates network-based exploitation with low privileges and no user interaction required. The vector also rates the potential impact to confidentiality, integrity, and availability as high.