SQL Injection vulnerability in dataease before 1.2.0, allows attackers to gain sensitive information via the orders parameter to /api/sys_msg/list/1/10.
2023-02-15T22:15:11.310
2025-03-20T14:15:14.690
Modified
[email protected]
CVSSv3.1: 7.5 (HIGH)