Fix SQL injection auth bypass in /rest/user/login (bind parameters) - #332
Open
devin-ai-integration[bot] wants to merge 1 commit into
Open
devin-ai-integration[bot] wants to merge 1 commit into
devin-ai-integration[bot] wants to merge 1 commit into
GitHub Advanced Security / CodeQL
failed
Sep 10, 2026 in 4s
1 new alert including 1 high severity security vulnerability
New alerts in code changed by this pull request
Security Alerts:
- 1 high
See annotations below for details.
Annotations
Check failure on line 43 in lib/insecurity.ts
Code scanning / CodeQL
Use of password hash with insufficient computational effort High
Loading