Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xhr9-v6fq-9x9p

Опубликовано: 26 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

With legitimate user credentials in hand, attackers can construct malicious SQL statements to bypass authentication logic and execute arbitrary database queries directly. This will consequently lead to slow database queries and expanded query coverage. This vulnerability features a low exploitation threshold, wide scope of impact, requires no external privilege escalation, and is classified as a high-priority fix.

With legitimate user credentials in hand, attackers can construct malicious SQL statements to bypass authentication logic and execute arbitrary database queries directly. This will consequently lead to slow database queries and expanded query coverage. This vulnerability features a low exploitation threshold, wide scope of impact, requires no external privilege escalation, and is classified as a high-priority fix.

EPSS

Процентиль: 46%
0.00579
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.3
nvd
22 дня назад

With legitimate user credentials in hand, attackers can construct malicious SQL statements to bypass authentication logic and execute arbitrary database queries directly. This will consequently lead to slow database queries and expanded query coverage. This vulnerability features a low exploitation threshold, wide scope of impact, requires no external privilege escalation, and is classified as a high-priority fix.

EPSS

Процентиль: 46%
0.00579
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-89