Vulnerability CVE-2022-38488


Published: 2022-12-14

Description:
logrocket-oauth2-example through 2020-05-27 allows SQL injection via the /auth/register username parameter.

 References:
https://archive.ph/VlGDa
https://archive.ph/PecmD
https://github.com/secoats/cve/tree/master/CVE-2022-38488_sqli_logrocket-oauth2-example
https://github.com/diogosouza/logrocket-oauth2-example
https://blog.logrocket.com/implement-oauth-2-0-node-js/

Copyright 2024, cxsecurity.com

 

Back to Top