References https://nvd.nist.gov/vuln/detail/CVE-2023-0241 https://github.com/advisories/GHSA-9crj-hpxh-f6qg https://security.snyk.io/vuln/SNYK-PYTHON-PGADMIN4-5406454 https://software.sonicwall.com/applications/ips/index.asp?ev=sig&sigid=19074 https://www.trendmicro.com/vinfo/us/threat-encyclopedia/vulnerability/8683/23-021-may-16-2023 https://www.pgadmin.org/news/ https://bugzilla.redhat.com/show_bug.cgi?id=2163692
Related Vulnerabilities鸿翼文档管理系统 importNewBpmnDesignByIe 代码执行漏洞北京中科聚网一体化运营平台 /manage/tplresource/importVisualModuleImg 文件上传漏洞PoCCVE-2026-47670: DbGate - Remote Code Execution via Dynamic Import Bypass东胜物流软件 /Import/ImportTrade/DeleteWMS SQL 注入漏洞phpVMS /importer 未授权访问漏洞(CVE-2026-42569)PoCCVE-2026-42569: phpVMS < 7.0.6 - Legacy Importer Authorization Bypass用友 NC /uapws/service/nc.itf.bd.crm.ICustomerImportToNcService XML 外部实体注入漏洞PoC用友 NC /portal/pt/portalpage/importPml XML 外部实体注入漏洞网神 SecGate 3600 防火墙 /?g=sec_ssl_agent_import_save 文件上传漏洞PoCCVE-2024-12732: AffiliateImporterEb <= 1.0.6 - Reflected XSSERPNext /api/method/erpnext.accounts.doctype.chart_of_accounts_importer.chart_of_accounts_importer.import_coa SQL 注入漏洞(CVE-2025-52043)PoCCVE-2022-4223: pgAdmin < 6.17 - Unauthenticated Remote Code Execution孚盟云CRM ImportBusinessPriceFiles 存在SQL注入漏洞