CVE-2022-24124
29.01.2022, 23:15
The query API in Casdoor before 1.13.1 has a SQL injection vulnerability related to the field and value parameters, as demonstrated by api/get-organizations.
Vendor | Product | Version |
---|---|---|
casbin | casdoor | 𝑥 < 1.13.1 |
𝑥
= Vulnerable software versions
References