
CVE-2024-36058 The Send Basket functionality in Koha Library before 23.05.10 is susceptible to Time-Based SQL Injection because it fails to sanitize the POST parameter bib_list in /… https://www.cve.org/CVERecord?id=CVE-2024-36058
Post summary
The statement announces a time‑based SQL injection flaw in Koha Library before version 23.05.10, detailing the vulnerable POST parameter and indicating a lack of input sanitization.
