PKSA-582m-pjr9-1vy2 Security Advisory
-
[CRITICAL] FacturaScripts: Authenticated SQL injection in the FacturaScripts REST API filter parameter via parenthesis bypass in `Where::sqlColumn`
PKSA-582m-pjr9-1vy2 CVE-2026-45262 GHSA-5qmh-x653-g8qj
Affected package: facturascripts/facturascripts
Affected version: <=2026.1
Reported by:
GitHub