CVE-2019-9047
EUVD-2019-1843323.02.2019, 21:29
GoRose v1.0.4 has SQL Injection when the order_by or group_by parameter can be controlled.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fizzday | gorose | 1.0.4 |
𝑥
= Vulnerable software versions
GoRose v1.0.4 has SQL Injection when the order_by or group_by parameter can be controlled.
| Vendor | Product | Version |
|---|---|---|
| fizzday | gorose | 1.0.4 |