NocoDB is software for building databases as spreadsheets. Prior to version 0.202.10, an authenticated attacker with create access could conduct a SQL Injection attack on MySQL DB using unescaped table_name. This vulnerability may result in leakage of sensitive data in the database. Version 0.202.10 contains a patch for the issue.
| Software | From | Fixed in |
|---|---|---|
nocodb
|
- | 0.202.10 |
| nocodb / nocodb | - | 0.202.10 |