Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-29h3-fj72-mp7v

Опубликовано: 27 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 7.1
CVSS3: 6.5

Описание

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

EPSS

Процентиль: 18%
0.00262
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.5
nvd
2 месяца назад

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

EPSS

Процентиль: 18%
0.00262
Низкий

7.1 High

CVSS4

6.5 Medium

CVSS3

Дефекты

CWE-89