A SQL injection vulnerability in Centreon 24.04.2 allows a remote high-privileged attacker to execute arbitrary SQL command via create user form inputs.
https://thewatch.centreon.com/latest-security-bulletins-64/security-bulletin-for-centreon-web-3809