A vulnerability classified as critical was found in MB Connect Line mbCONNECT24 and mymbCONNECT24 up to 2.20.0. The impacted element is the function
getProjectScalings. The manipulation results in sql injection.
This vulnerability was named CVE-2026-40837. The attack may be performed from remote. There is no available exploit.