{ "Title": "SQL Injection in lookup-server", "Timestamp": 1564135200, "Risk": 1, "CVSS3": { "score": 10, "vector": "AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:N" }, "CWE": { "id": 89, "name": "SQL Injection" }, "HackerOne": 508487, "Affected":[ { "Version":"0.3.0", "CVE":"CVE-2019-5476", "Operator":"<" } ], "Description":"Improper sanitation of user input allowed any unauthenticated user to perform SQL injection attacks.", "ActionTaken": "The error has been fixed.", "Acknowledgment":[ { "Name": "Leon Klingele", "Mail": "security@leonklingele.de", "Reason": "Vulnerability discovery and disclosure." } ], "Resolution": "It is recommended that all instances are upgraded to at least version 0.3.0." }