kovi44 / NODEMCU-LUA-OTA-ESP8266

OTA Web management + esp8266 lua client for OTA scripts update
GNU General Public License v2.0
49 stars 35 forks source link

🚨 Potential Improper Neutralization of Special Elements used in an SQL Command #7

Open huntr-helper opened 3 years ago

huntr-helper commented 3 years ago

👋 Hello, @kovi44 - a potential high severity Improper Neutralization of Special Elements used in an SQL Command vulnerability in your repository has been disclosed to us.

Next Steps

1️⃣ Visit https://huntr.dev/bounties/1-other-kovi44/NODEMCU-LUA-OTA-ESP8266 for more advisory information.

2️⃣ Sign-up to validate or speak to the researcher for more assistance.

3️⃣ Propose a patch or outsource it to our community - whoever fixes it gets paid.


Confused or need more help?


This issue was automatically generated by huntr.dev - a bug bounty board for securing open source code.

huntr-helper commented 3 years ago

📦 A patch has been submitted for this report. 🔗 Check the patch (https://github.com/kovi44/NODEMCU-LUA-OTA-ESP8266/compare/HEAD...hitisec:fix_sql_injection) or visit the advisory page (https://huntr.dev/bounties/1-other-kovi44/NODEMCU-LUA-OTA-ESP8266) for more information.