Dolibarr ERP/CRM is affected by SQL injection in versions before 5.0.4 via product/stats/card.php (type parameter).
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-9839.json"