← back
CVE-2022-39303

Ree6 vulnerable to SQL Injection

CVSS 8.1 HIGHEPSS 0.7%CWE-89
Ree6 is a moderation bot. This vulnerability allows manipulation of SQL queries. This issue has been patched in version 1.7.0 by using Javas PreparedStatements, which allow object setting without the risk of SQL injection. There are currently no known workarounds.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
Ree6-Applications · Ree6

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →