DevSecOps Toolkit

CVE record

CVE-2022-0495

CRITICALCVSS 9.4

The library automation system product KOHA developed by Parantez Teknoloji before version 19.05.03 has an unauthenticated SQL Injection vulnerability. This has been fixed in the version 19.05.03.01.

Vulnerability metadata

Published
2022-09-21T03:45:09.187Z
Modified
2026-05-20T02:46:20.437Z
EPSS
Not available
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L

References