CVE-2023-30625 Scanner
Detects 'SQL Injection (SQLi)' vulnerability in RudderStack affects v. prior to 1.3.0-rc.1.
Used 3.3k times · 4.3k assets checked · domain, ipv4, subdomain
rudder-server is part of RudderStack, an open source Customer Data Platform (CDP). Versions of rudder-server prior to 1.3.0-rc.1 are vulnerable to SQL injection. This issue may lead to Remote Code Execution (RCE) due to the `rudder` role in PostgresSQL having superuser permissions by default. Version 1.3.0-rc.1 contains patches for this issue.
Detects 'SQL Injection (SQLi)' vulnerability in RudderStack affects v. prior to 1.3.0-rc.1.
Used 3.3k times · 4.3k assets checked · domain, ipv4, subdomain
S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.
Create a free account →