Loading HuntDB...

GHSA-9c5q-pm67-4j2r

GitHub Security Advisory

⚠ Unreviewed LOW Has CVE

Advisory Details

A post-auth read-only SQL injection vulnerability allows API clients to read non-sensitive configuration database contents in the API controller of Sophos Firewall older than version 19.5 GA.

Related CVEs

Key Information

GHSA ID
GHSA-9c5q-pm67-4j2r
Published
December 1, 2022 6:30 PM
Last Modified
December 2, 2022 9:30 PM
CVSS Score
2.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 30, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.