yetanalytics / lrsql

A SQL-based Learning Record Store
https://www.sqllrs.com
Apache License 2.0
91 stars 17 forks source link

Address CVE-2024-1597 via Postgres JDBC driver update #377

Closed kelvinqian00 closed 8 months ago

kelvinqian00 commented 8 months ago

Address the critical vulnerability CVE-2024-1597 via Postgres JDBC driver update. This vulnerability can be exploited if the user sets a particular parameter in the JBDC URL, which our configuration allows the user to do.