Contao Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2019-11512 - Vulnerability Database

Contao Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2019-11512

Critical
Reference: CVE-2019-11512
Title: Contao Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

Contao 4.x allows SQL Injection. Fixed in Contao 4.4.39 and Contao 4.7.5.