GHSA-w8hf-r35f-2h3jHighCVSS 6.5
Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate database...
🔗 CVE IDs covered (1)
📋 Description
Atals-Livre contains a SQL injection vulnerability that allows attackers to manipulate database queries by passing unsanitized input through a GET parameter to the supp() deletion helper function. Attackers can inject malicious SQL syntax via the vulnerable GET parameter to perform unauthorized database operations including data deletion and extraction.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-69704
- https://gist.github.com/arjunjaincs/8cd878b6628d587a1139febd40de9ac6
- https://github.com/maximeAmini/Atals-Livre
- https://www.vulncheck.com/advisories/atals-livre-sql-injection-via-unsanitized-get-parameter-in-supp
- https://github.com/advisories/GHSA-w8hf-r35f-2h3j