Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In the smartLibrary component of the HRForecast Suite 0.4.3, a SQL injection vulnerability was discovered in the valueKey parameter. This flaw enables any authenticated user to execute arbitrary SQL queries, via crafted payloads to valueKey to the api/smartlibrary/v2/en/dictionaries/options/lookup endpoint.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
TalentNeuron Suite 安全漏洞
Vulnerability Description
TalentNeuron Suite是美国TalentNeuron公司的一个人才布局综合平台。 TalentNeuron Suite 0.4.3版本存在安全漏洞,该漏洞源于参数注入,可能导致SQL注入攻击。
CVSS Information
N/A
Vulnerability Type
N/A