CVE-2022-38537 Information
Sep 14, 2022
cve
Description
Archery v1.4.5 to v1.8.5 was discovered to contain multiple SQL injection vulnerabilities via the start_file end_file start_time and stop_time parameters in the binlog2sql interface.
Reference
https://github.com/hhyo/Archery/blob/v1.8.5/sql/urls.py#L135 https://github.com/hhyo/Archery/blob/v1.8.5/sql/urls.py#L135
Share on: