CVE-2026-32628 | Mintplex-Labs anything-llm up to 1.11.1 getTableSchemaSql table_name sql injection
A vulnerability was found in Mintplex-Labs anything-llm up to 1.11.1. It has been classified as critical. This impacts the function getTableSchemaSql. The manipulation of the argument table_name leads to sql injection.
This vulnerability is documented as CVE-2026-32628. The attack can be initiated remotely. There is not any exploit available.