CRLibre / API_Hacienda

API libre para Factura Electrónica en Costa Rica, interfaz para integrar sistemas con el Ministerio de Hacienda para la Facturación Electrónica
https://crlibre.org/factura-electronica/
GNU Affero General Public License v3.0
166 stars 122 forks source link

🚨 Potential SQL Injection (CWE-89) #121

Open huntr-helper opened 3 years ago

huntr-helper commented 3 years ago

👋 Hello, @walner1borbon, @mamm26, @JeanCarlosChavarriaHughes - a potential high severity SQL Injection (CWE-89) vulnerability in your repository has been disclosed to us.

Next Steps

1️⃣ Visit https://huntr.dev/bounties/1-other-CRLibre/API_Hacienda for more advisory information.

2️⃣ Sign-up to validate or speak to the researcher for more assistance.

3️⃣ Propose a patch or outsource it to our community - whoever fixes it gets paid.

✏️ NOTE: If we don't hear from you in 14 days, we will proactively source a fix for this vulnerability (and open a PR) to ensure community safety.


Confused or need more help?


This issue was automatically generated by huntr.dev - a bug bounty board for securing open source code.