High
CVSS 7.5
Overview
SQL injection vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute arbitrary SQL commands via the messageToUserAccNum parameter.
SQL injection vulnerability in the compose message form in HELM 3.1.19 and earli...
SQL injection vulnerability in the compose message form in HELM 3.1.19 and earlier allows remote attackers to execute arbitrary SQL commands via the messageToUserAccNum parameter.
This vulnerability is rated 🟠 HIGH.
Recommended actions: