Description
A SQL Injection attack in FUXA <= 1.1.12 allows exfiltration of confidential information from the database.
Remediation
References
https://github.com/frangoteam/FUXA
https://github.com/MateusTesser/CVE-2023-31717
https://youtu.be/IBMXTEI_5wY
Related Vulnerabilities
CVE-2022-29161 Vulnerability in maven package org.xwiki.platform:xwiki-platform-crypto
CVE-2019-25103 Vulnerability in npm package simple-markdown
CVE-2017-1000190 Vulnerability in maven package org.simpleframework:simple-xml
CVE-2022-36034 Vulnerability in npm package nitrado.js
CVE-2021-25329 Vulnerability in maven package org.apache.tomcat:tomcat-catalina