CVE-2022-24124
EUVD-2022-108729.01.2022, 23:15
The query API in Casdoor before 1.13.1 has a SQL injection vulnerability related to the field and value parameters, as demonstrated by api/get-organizations.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| casbin | casdoor | 𝑥 < 1.13.1 |
𝑥
= Vulnerable software versions
References