A vulnerability was found in Centralized-Salesforce-Dev-Framework. It has been declared as problematic. Affected by this vulnerability is the function SObjectService of the file src/classes/SObjectService.cls of the component SOQL Handler. The manipulation of the argument orderDirection leads to injection. The patch is named db03ac5b8a9d830095991b529c067a030a0ccf7b. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217195.
{
"unresolved_ranges": [
{
"cpes": [
"cpe:2.3:a:centralized_salesforce_development_framework_project:centralized_salesforce_development_framework:*:*:*:*:*:*:*:*"
],
"extracted_events": [
{
"fixed": "2016-06-20"
}
],
"source": "CPE_RANGE",
"vendor_product": "centralized_salesforce_development_framework_project:centralized_salesforce_development_framework"
}
]
}