CVE-2025-56556: Subrion CMS: Authenticated administrators are able to gain escalated access through Run SQL Query tool
(updated )
An issue was discovered in Subrion CMS 4.2.1, allowing authenticated adminitrators or moderators with access to the built-in Run SQL Query feature under the SQL Tool admin panel - to gain escalated privileges in the context of the SQL query tool.
References
Code Behaviors & Features
Detect and mitigate CVE-2025-56556 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →