Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4563-rxxv-48gh

Опубликовано: 27 мая 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the userinfo endpoint due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the userinfo endpoint due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

EPSS

Процентиль: 25%
0.0032
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.5
nvd
3 месяца назад

An unauthenticated remote attacker can exploit an unauthenticated SQL Injection vulnerability in the userinfo endpoint due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

EPSS

Процентиль: 25%
0.0032
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-89