A vulnerability identified as critical has been detected in syslog-ng. Affected by this issue is the function
afsql_dd_run_query of the file modules/afsql/afsql.c of the component afsql. The manipulation leads to sql injection.
This vulnerability is documented as CVE-2026-39879. The attack can be initiated remotely. There is not any exploit available.