GHSA-4h5h-p23f-hjqf
MODERATECVE-2022-4963A vulnerability was found in Folio Spring Module Core before 2.0.0. Affected by this issue is the function dropSchema of the file tenant/src/main/java/org/folio/spring/tenant/hibernate/HibernateSchemaService.java of the component Schema Name Handler. The manipulation leads to sql injection. Upgrading to version 2.0.0 is able to address this issue. The name of the patch is d374a5f77e6b58e36f0e0e441
- Affected
- < 2.0.0
- Fixed in
- 2.0.0
- Weakness
- CWE-89
- Published
- 2024-03-21
- Source
- github