GHSA-w2mx-4cf3-g6gcCriticalCVSS 9.8

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 -...

Published
September 16, 2025
Last Modified
June 1, 2026

🔗 CVE IDs covered (1)

📋 Description

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection'), CWE - 200 - Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Arma Store Armalife allows SQL Injection.This issue affects Armalife: through 20250916. 

NOTE: The vendor did not inform about the completion of the fixing process within the specified time. The CVE will be updated when new information becomes available.

🔗 References (4)