Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | SQL injection in QuerySet.annotate(), aggregate(), and extra() | https://github.com/YouGina/CVE-2022-28346 | POC Details |
| 2 | Django QuerySet.annotate(), aggregate(), extra() SQL 注入 | https://github.com/DeEpinGh0st/CVE-2022-28346 | POC Details |
| 3 | An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs. | https://github.com/vincentinttsh/CVE-2022-28346 | POC Details |
| 4 | A flaw was found in the Django package, which leads to a SQL injection. This flaw allows an attacker using a crafted dictionary containing malicious SQL queries to compromise the database completely. | https://github.com/kamal-marouane/CVE-2022-28346 | POC Details |
| 5 | An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs. | https://github.com/ahsentekd/CVE-2022-28346 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2022-21803 | 7.3 HIGH | Prototype Pollution |
| CVE-2022-27139 | Ghost CMS 代码问题漏洞 | |
| CVE-2022-27387 | MariaDB 安全漏洞 | |
| CVE-2022-27386 | MariaDB SQL注入漏洞 | |
| CVE-2022-28397 | Ghost CMS 代码问题漏洞 | |
| CVE-2022-27952 | Payload CMS 代码问题漏洞 | |
| CVE-2022-27263 | Strapi 代码问题漏洞 | |
| CVE-2022-27262 | Skipper 代码问题漏洞 | |
| CVE-2022-27261 | express-fileupload 代码问题漏洞 | |
| CVE-2022-27260 | Butter 代码问题漏洞 | |
| CVE-2021-39802 | Google Android 缓冲区错误漏洞 | |
| CVE-2021-39814 | Google Android 缓冲区错误漏洞 | |
| CVE-2021-39812 | Google Android 资源管理错误漏洞 | |
| CVE-2021-39809 | Google Android 缓冲区错误漏洞 | |
| CVE-2021-39808 | Google Android 权限许可和访问控制问题漏洞 | |
| CVE-2021-39807 | Google Android权限许可和访问控制问题漏洞 | |
| CVE-2021-39805 | Google Android 缓冲区错误漏洞 | |
| CVE-2021-39804 | Google Android 代码问题漏洞 | |
| CVE-2021-39803 | Google Android 资源管理错误漏洞 | |
| CVE-2021-39800 | Google Android 资源管理错误漏洞 |
Showing top 20 of 68 CVEs. View all on vendor page → →
No comments yet