phant0ms

1 exploit Active since Nov 2023
CVE-2023-46575 WRITEUP CRITICAL WRITEUP
Meshery < 0.6.179 - SQL Injection via Order Parameter
A SQL injection vulnerability exists in Meshery prior to version v0.6.179, enabling a remote attacker to retrieve sensitive information and execute arbitrary code through the “order” parameter
CVSS 9.8