Headline
GHSA-fpcf-qr79-hjqp: SQL Injection in Apache InLong
Improper Neutralization of Special Elements used in an SQL Command (‘SQL Injection’) vulnerability in Apache InLong. This issue affects Apache InLong: from 1.4.0 through 1.8.0, the attacker can create misleading or false records, making it harder to audit and trace malicious activities. Users are advised to upgrade to Apache InLong’s 1.8.0 or cherry-pick [1] to solve it.
[1] https://github.com/apache/inlong/pull/8628
SQL Injection in Apache InLong
High severity GitHub Reviewed Published Oct 16, 2023 to the GitHub Advisory Database • Updated Oct 17, 2023