Dataease is an open source data visualization and analysis tool. The blacklist for SQL injection protection is missing entries. This vulnerability has been fixed in version 1.18.5. There are no known workarounds.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published: 2023-03-24T23:43:15.992Z

Updated: 2024-08-02T12:38:25.347Z

Reserved: 2023-03-15T15:59:10.054Z

Link: CVE-2023-28437

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-03-25T00:15:08.243

Modified: 2023-03-30T19:27:58.343

Link: CVE-2023-28437

cve-icon Redhat

No data.