Security Advisory

CVE-2019-13957

9.8
CRITICAL

Vulnerability Description

In Umbraco 7.3.8, there is SQL Injection in the backoffice/PageWApprove/PageWApproveApi/GetInpectSearch method via the nodeName parameter.
Published Date October 2, 2019
Official Source NIST NVD Advisory