GHSA-qqh2-wvmv-h72m, CVE-2023-41886
maven/org.openrefine/database
OpenRefine vulnerable to arbitrary file read in project import with mysql jdbc url attack
An arbitrary file read vulnerability allows any unauthenticated user to read the file on the server.
All versions up to 3.7.4
Upgrade to version 3.7.5 or above.
2023-09-13
source |