Dataease is an open source data visualization and analysis tool. The blacklist for SQL injection protection is missing entries. This vulnerability has been fixed in version 1.18.5. There are no known workarounds.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-32126 | Dataease is an open source data visualization and analysis tool. The blacklist for SQL injection protection is missing entries. This vulnerability has been fixed in version 1.18.5. There are no known workarounds. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 19 Feb 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-02-19T20:36:49.277Z
Reserved: 2023-03-15T15:59:10.054Z
Link: CVE-2023-28437
Updated: 2024-08-02T12:38:25.347Z
Status : Modified
Published: 2023-03-25T00:15:08.243
Modified: 2024-11-21T07:55:03.900
Link: CVE-2023-28437
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD