CVE-2023-30325 Information

Description

SQL Injection vulnerability in textMessage parameter in /src/chatbotapp/chatWindow.java in wliang6 ChatEngine v.1.0 allows attackers to gain sensitive information.

Reference

https://github.com/wliang6/ChatEngine/blob/fded8e710ad59f816867ad47d7fc4862f6502f3e/src/chatbotapp/chatWindow.java#L33:L60 https://payatu.com/advisory/sql-injection-vulnerability-in-textmessage-field-in-chatengine-1-0/

Share on: