CVE-2025-70420: Authenticated SQL Injection in Genesys Latitude

During a security assessment, OkunSec identified an authenticated SQL injection vulnerability in Latitude v25.1.0.420, developed by Genesys. Latitude is a debt collection platform used to manage accounts, process payments, and handle debtor communications. As such, it processes sensitive PII and financial data, making it an attractive target for threat actors. The issue was identified in […]

CVE-2025-70420: Authenticated SQL Injection in Genesys Latitude Read More ยป