Description
A SQL Injection attack in FUXA <= 1.1.12 allows exfiltration of confidential information from the database.
Remediation
References
https://github.com/MateusTesser/CVE-2023-31717
https://github.com/frangoteam/FUXA
https://youtu.be/IBMXTEI_5wY
Related Vulnerabilities
CVE-2023-37964 Vulnerability in maven package org.jenkins-ci.plugins:elasticbox
CVE-2017-7686 Vulnerability in maven package org.apache.ignite:ignite-core
CVE-2022-43424 Vulnerability in maven package com.compuware.jenkins:compuware-xpediter-code-coverage
CVE-2022-36912 Vulnerability in maven package org.jenkins-ci.plugins:openstack-heat