CVE-2026-34385 | fleetdm fleet up to 4.80.x Apple MDM Profile Delivery Pipeline sql injection (GHSA-v895-833r-8c45)
A vulnerability categorized as critical has been discovered in fleetdm fleet up to 4.80.x. Affected by this issue is some unknown functionality of the component Apple MDM Profile Delivery Pipeline. The manipulation results in sql injection.
This vulnerability is known as CVE-2026-34385. It is possible to launch the attack remotely. No exploit is available.
It is advisable to upgrade the affected component.