2022-04-25 21:15:55 +09:00
[
{
"id" : 485285000 ,
"name" : "CVE-2022-28346" ,
"full_name" : "YouGina\/CVE-2022-28346" ,
"owner" : {
"login" : "YouGina" ,
"id" : 5002624 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/5002624?v=4" ,
"html_url" : "https:\/\/github.com\/YouGina"
} ,
"html_url" : "https:\/\/github.com\/YouGina\/CVE-2022-28346" ,
"description" : "SQL injection in QuerySet.annotate(), aggregate(), and extra()" ,
"fork" : false ,
"created_at" : "2022-04-25T08:27:34Z" ,
2022-04-26 15:15:39 +09:00
"updated_at" : "2022-04-26T02:51:13Z" ,
2022-04-25 21:15:55 +09:00
"pushed_at" : "2022-04-25T11:18:12Z" ,
2022-04-26 15:15:39 +09:00
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
2022-04-25 21:15:55 +09:00
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
2022-04-26 15:15:39 +09:00
"watchers" : 1 ,
2022-04-25 21:15:55 +09:00
"score" : 0
2022-04-27 03:15:28 +09:00
} ,
{
"id" : 485828921 ,
"name" : "CVE-2022-28346" ,
"full_name" : "DeEpinGh0st\/CVE-2022-28346" ,
"owner" : {
"login" : "DeEpinGh0st" ,
"id" : 34375573 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/34375573?v=4" ,
"html_url" : "https:\/\/github.com\/DeEpinGh0st"
} ,
"html_url" : "https:\/\/github.com\/DeEpinGh0st\/CVE-2022-28346" ,
"description" : "Django QuerySet.annotate(), aggregate(), extra() SQL 注入" ,
"fork" : false ,
"created_at" : "2022-04-26T14:47:56Z" ,
2022-05-12 03:17:09 +09:00
"updated_at" : "2022-05-11T15:21:32Z" ,
2022-05-13 21:15:30 +09:00
"pushed_at" : "2022-05-13T08:58:13Z" ,
2022-05-12 03:17:09 +09:00
"stargazers_count" : 6 ,
"watchers_count" : 6 ,
2022-05-09 21:17:03 +09:00
"forks_count" : 2 ,
2022-04-27 03:15:28 +09:00
"allow_forking" : true ,
"is_template" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
2022-05-09 21:17:03 +09:00
"forks" : 2 ,
2022-05-12 03:17:09 +09:00
"watchers" : 6 ,
2022-04-27 03:15:28 +09:00
"score" : 0
2022-05-15 15:15:00 +09:00
} ,
{
"id" : 492352752 ,
"name" : "CVE-2022-28346" ,
"full_name" : "ahsentekdemir\/CVE-2022-28346" ,
"owner" : {
"login" : "ahsentekdemir" ,
"id" : 23294573 ,
"avatar_url" : "https:\/\/avatars.githubusercontent.com\/u\/23294573?v=4" ,
"html_url" : "https:\/\/github.com\/ahsentekdemir"
} ,
"html_url" : "https:\/\/github.com\/ahsentekdemir\/CVE-2022-28346" ,
"description" : "An issue was discovered in Django 2.2 before 2.2.28, 3.2 before 3.2.13, and 4.0 before 4.0.4. QuerySet.annotate(), aggregate(), and extra() methods are subject to SQL injection in column aliases via a crafted dictionary (with dictionary expansion) as the passed **kwargs." ,
"fork" : false ,
"created_at" : "2022-05-15T00:24:19Z" ,
"updated_at" : "2022-05-15T04:59:33Z" ,
"pushed_at" : "2022-05-15T00:53:22Z" ,
"stargazers_count" : 1 ,
"watchers_count" : 1 ,
"forks_count" : 0 ,
"allow_forking" : true ,
"is_template" : false ,
"topics" : [ ] ,
"visibility" : "public" ,
"forks" : 0 ,
"watchers" : 1 ,
"score" : 0
2022-04-25 21:15:55 +09:00
}
]