CVE-2023-31719: SQL Injection
Published Sep 21, 2023
·Updated
FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin.
Other sources
FUXA <= 1.1.12 is vulnerable to SQL Injection via /api/signin.
Affected Software
2 affected components
npm/fuxa-server<=1.1.12
frangoteam FUXA<=1.1.12
Event History
Sep 21, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Sep 22, 2023
Advisory Published
12:30 AM
Frequently Asked Questions
1
What is the severity of CVE-2023-31719?
The severity of CVE-2023-31719 is critical with a CVSS score of 9.8.
2
What is the affected software of CVE-2023-31719?
The affected software of CVE-2023-31719 is FUXA version 1.1.12 or below.
3
What is the vulnerability description of CVE-2023-31719?
CVE-2023-31719 is a SQL Injection vulnerability in FUXA <= 1.1.12 via /api/signin.
4
How can I fix the SQL Injection vulnerability in FUXA <= 1.1.12?
To fix the SQL Injection vulnerability in FUXA <= 1.1.12, update to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2023-31719?
More information about CVE-2023-31719 can be found at NVD, GitHub (MateusTesser), and GitHub (frangoteam).