Insufficient URI encoding in restforce before 3.0.0 allows attacker to inject arbitrary parameters into Salesforce API requests.
References
Link | Resource |
---|---|
https://github.com/restforce/restforce/pull/392 | Issue Tracking Third Party Advisory |
Configurations
History
No history.
Information
Published : 2018-08-03 20:29
Updated : 2024-02-28 16:48
NVD link : CVE-2018-3777
Mitre link : CVE-2018-3777
CVE.ORG link : CVE-2018-3777
JSON object : View
Products Affected
restforce
- restforce