Description
FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin.
Remediation
References
https://github.com/MateusTesser/CVE-2023-31719
https://youtu.be/cjb2KYpV6dY
https://github.com/frangoteam/FUXA
Related Vulnerabilities
CVE-2019-16775 Vulnerability in maven package org.webjars.npm:npm
CVE-2022-40149 Vulnerability in maven package org.codehaus.jettison:jettison
CVE-2019-10095 Vulnerability in maven package org.apache.zeppelin:zeppelin
CVE-2016-6796 Vulnerability in maven package org.apache.tomcat:tomcat-jasper
CVE-2019-14862 Vulnerability in maven package org.jszip.redist:knockout