2022-01-29 22:53:01
mitre
PUBLISHED
The query API in Casdoor before 1.13.1 has a SQL injection vulnerability related to the field and value parameters, as demonstrated by api/get-organizations.