A malicious user can send a REST request to a List endpoint with filters that contain custom SQL statements. This can result in SQL injection.
{ "review_status": "REVIEWED", "url": "https://pkg.go.dev/vuln/GO-2023-2162" }
{ "imports": [ { "path": "github.com/flyteorg/flyteadmin/pkg/common", "symbols": [ "NewSortParameter" ] } ] }