ManageEngine (ADSelfService Plus) Product January 2026 Security Update Advisory

ManageEngine (ADSelfService Plus) Product January 2026 Security Update Advisory

Overview

 

Zoho(https://www.zohocorp.com/) has released a security update that addresses a vulnerability in its ManageEngine suite of products. users of affected products are advised to update to the latest version.

 

Affected Products

 

ADSelfService Plus build 6522 and earlier

 

Resolved Vulnerabilities

 

High Impact SQL Injection Vulnerability (CVE-2026-1367) in ADSelfService Plus [1]

 

Vulnerability Patches

 

Please follow the security advisory published on January 30, 2019 to update to the applicable version and the latest version.

ADSelfService Plus build 6523 version

 

Referenced Sites

 

[1] CVE-2026-1367 – SQL Injection Vulnerability

https://www.manageengine.com/products/self-service-password/advisory/CVE-2026-1367.html