laravel-jqgrid vulnerable to SQL Injection
Critical severity
GitHub Reviewed
Published
Dec 19, 2022
to the GitHub Advisory Database
•
Updated Jan 30, 2023
Description
Published by the National Vulnerability Database
Dec 19, 2022
Published to the GitHub Advisory Database
Dec 19, 2022
Reviewed
Dec 30, 2022
Last updated
Jan 30, 2023
A vulnerability classified as critical was found in laravel-jqgrid. Affected by this vulnerability is the function getRows of the file src/Mgallegos/LaravelJqgrid/Repositories/EloquentRepositoryAbstract.php. The manipulation leads to sql injection. The name of the patch is fbc2d94f43d0dc772767a5bdb2681133036f935e. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-216271.
References