Critical severity9.8NVD Advisory· Published Nov 24, 2023· Updated Jun 17, 2026
CVE-2023-46575
CVE-2023-46575
Description
A SQL injection vulnerability exists in Meshery prior to version v0.6.179, enabling a remote attacker to retrieve sensitive information and execute arbitrary code through the “order” parameter
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
github.com/layer5io/mesheryGo | < 0.6.179 | 0.6.179 |
Affected products
2Patches
Vulnerability mechanics
References
6- github.com/meshery/meshery/commit/ffe00967acfe4444a5db08ff3a4cafb9adf6013fnvdPatchWEB
- github.com/meshery/meshery/compare/v0.6.178...v0.6.179nvdPatchWEB
- github.com/advisories/GHSA-9jjc-grg5-67gjghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-46575ghsaADVISORY
- github.com/meshery/meshery/pull/9372nvdIssue TrackingWEB
- meshery.ionvdProductWEB
News mentions
0No linked articles in our index yet.