Craft CMS Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2024-37843 - Vulnerability Database

Craft CMS Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2024-37843

Critical
Reference: CVE-2024-37843
Title: Craft CMS Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

Craft CMS up to v3.7.31 was discovered to contain a SQL injection vulnerability via the GraphQL API endpoint.