MEDIUM4.9
GHSA-9g9j-3w64-3cjh
MoonShine SQL Injection Vulnerability
Details
MoonShine v3.12.5 was discovered to contain a SQL injection vulnerability via the Data parameter under the Blog module.
Are you affected?
Enter the version of the package you're using.
Affected packages
Packagist/moonshine/moonshine
Introduced in:
0No fixed version published yet for moonshine/moonshine (composer). Pin to a known-safe version or switch to an alternative.