Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fq57-8j4v-2xq2

Опубликовано: 19 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.7

Описание

Fileflows versions before 25.05.2 are affected by an authenticated SQL injection vulnerability in the library-file search function. Successful exploitation requires the system to use MySQL as the underlying database and could result in privilege escalation or data exfiltration.

Fileflows versions before 25.05.2 are affected by an authenticated SQL injection vulnerability in the library-file search function. Successful exploitation requires the system to use MySQL as the underlying database and could result in privilege escalation or data exfiltration.

EPSS

Процентиль: 14%
0.00045
Низкий

6.7 Medium

CVSS4

Дефекты

CWE-89

Связанные уязвимости

nvd
4 месяца назад

Fileflows versions before 25.05.2 are affected by an authenticated SQL injection vulnerability in the library-file search function. Successful exploitation requires the system to use MySQL as the underlying database and could result in privilege escalation or data exfiltration.

EPSS

Процентиль: 14%
0.00045
Низкий

6.7 Medium

CVSS4

Дефекты

CWE-89