Ampache before version 4.2.2 allows unauthenticated users to perform SQL injection. Refer to the referenced GitHub Security Advisory for details and a workaround. This is fixed in version 4.2.2 and the development branch.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ampache ampache |