Security Advisory

CVE-2022-24124

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-01-29 22:53:01
Last updated 2024-08-03 03:59:23
Assigner mitre
State PUBLISHED

Description

The query API in Casdoor before 1.13.1 has a SQL injection vulnerability related to the field and value parameters, as demonstrated by api/get-organizations.