Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m358-x52g-3qmx

Опубликовано: 25 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

This vulnerability allows attackers to directly query the underlying database, potentially retrieving all data stored in the Billing Admin database, including user credentials. User passwords are stored in plaintext, significantly increasing the severity of this issue.

This vulnerability allows attackers to directly query the underlying database, potentially retrieving all data stored in the Billing Admin database, including user credentials. User passwords are stored in plaintext, significantly increasing the severity of this issue.

EPSS

Процентиль: 18%
0.00056
Низкий

8.1 High

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 7.3
nvd
5 месяцев назад

This vulnerability allows attackers to directly query the underlying database, potentially retrieving all data stored in the Billing Admin database, including user credentials. User passwords are stored in plaintext, significantly increasing the severity of this issue.

EPSS

Процентиль: 18%
0.00056
Низкий

8.1 High

CVSS3

Дефекты

CWE-89