GHSA-v64v-fq96-c5wv
HIGHCVE-2025-1520PostHog ClickHouse Table Functions SQL Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of PostHog. Authentication is required to exploit this vulnerability.
- Affected
- <= 1.10.7
- Fixed in
- not stated
- Weakness
- CWE-89
- Published
- 2025-04-23
- Source
- github