Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-fx3v-4w3w-wpwr: Code injection in wix-embedded-mysql

wix-embedded-mysql v4.6.2 and below was discovered to contain a code injection vulnerability in the component com.wix.mysql.distribution.Setup.apply. This vulnerability is exploited via passing an unchecked argument.

ghsa
#sql#vulnerability#git

Code injection in wix-embedded-mysql

High severity GitHub Reviewed Published Jul 28, 2023 to the GitHub Advisory Database • Updated Jul 28, 2023

Related news

CVE-2023-39021: My-CVE-Public-References/com_wix_wix-embedded-mysql at main · LetianYuan/My-CVE-Public-References

wix-embedded-mysql v4.6.1 and below was discovered to contain a code injection vulnerability in the component com.wix.mysql.distribution.Setup.apply. This vulnerability is exploited via passing an unchecked argument.