Skip to content

OneUptime ClickHouse vulnerable to SQL Injection via unvalidated column identifiers in sort, select, and groupBy parameters

High severity GitHub Reviewed Published Mar 17, 2026 in OneUptime/oneuptime • Updated Mar 18, 2026

No closed alerts for this advisory

Give feedback on Dependabot alerts