CVE-2026-41453 | Krayin laravel-crm up to 2.2.3 DataGrid LeadDataGrid.php havingRaw rotten_lead[in] sql injection
A vulnerability marked as critical has been reported in Krayin laravel-crm up to 2.2.3. This affects the function havingRaw of the file LeadDataGrid.php of the component DataGrid. The manipulation of the argument rotten_lead[in] leads to sql injection.
This vulnerability is listed as CVE-2026-41453. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.