A SQL injection vulnerability in Meshery before 0.6.179 allows a remote attacker to obtain sensitive information and execute arbitrary code via the order parameter.
{ "github_reviewed_at": "2023-11-24T19:01:37Z", "cwe_ids": [ "CWE-89" ], "nvd_published_at": "2023-11-24T14:15:08Z", "severity": "CRITICAL", "github_reviewed": true }