CVE-2022-2067: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
(updated )
SQL Injection in GitHub repository francoisjacquet/rosariosis prior to 9.0.
References
- github.com/advisories/GHSA-3pqv-6pm3-g46j
- github.com/francoisjacquet/rosariosis/blob/51947b6cfc7f0df62ab3305839c89586004fbec2/modules/School_Setup/Calendar.php
- github.com/francoisjacquet/rosariosis/commit/15d5e8700d538935b5c411b2a1e25bcf7e16c47c
- huntr.dev/bounties/a85a53a4-3009-4f41-ac33-8bed8bbe16a8
- nvd.nist.gov/vuln/detail/CVE-2022-2067
Detect and mitigate CVE-2022-2067 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →