{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aironmountainenvision/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:ironmountain:envision:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.8,"id":"CVE-2026-86595"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["enVision (\u003c 260655)"],"_cs_severities":["high"],"_cs_tags":["web-application","sqli"],"_cs_type":"advisory","_cs_vendors":["Iron Mountain"],"content_html":"\u003cp\u003eCVE-2026-86595 describes an SQL injection (SQLi) vulnerability affecting Iron Mountain enVision services. The vulnerability is caused by improper neutralization of special elements within SQL queries, which allows an attacker to inject arbitrary SQL commands. This flaw can be exploited by an unauthenticated remote attacker to gain unauthorized access to the underlying database, potentially resulting in data exfiltration, modification, or deletion. The vulnerability affects all versions of enVision prior to 260655. Defenders should identify all internet-facing instances of enVision and apply the vendor-provided security updates to mitigate the risk of exploitation.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows unauthorized access to sensitive archived data managed by the enVision platform. Depending on the database permissions and configuration, an attacker could potentially extract the entire contents of the database, modify stored records, or gain deeper access into the hosting environment. Organizations relying on enVision for regulatory compliance or long-term data storage face significant risk of data breach and integrity loss if this flaw is exploited.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the immediate patching of all deployed instances of enVision. Upgrade the application to version 260655 or the latest available version provided by Iron Mountain. Monitor web application firewall (WAF) logs for suspicious SQL injection patterns, such as the presence of common SQL keywords (e.g., UNION, SELECT, OR 1=1) within URI parameters or request headers directed at enVision services. Given the nature of SQLi, auditing database access logs for unusual queries originating from the application service account is also recommended to detect potential post-exploitation activity.\u003c/p\u003e\n","date_modified":"2026-09-28T16:20:47Z","date_published":"2026-09-28T16:20:47Z","id":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-86595/","summary":"CVE-2026-86595 is an SQL injection vulnerability in Iron Mountain enVision versions prior to 260655 that allows unauthenticated attackers to execute arbitrary SQL commands against the backend database.","title":"SQL Injection Vulnerability in Iron Mountain enVision","url":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-86595/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:ironmountain:envision:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}