Processed: Re: CVE-2026-42167: SQL injection possible via mod_sql because of is_escaped_text() logic

Debian Bug Tracking System owner at bugs.debian.org
Tue Apr 28 13:51:01 BST 2026


Processing control commands:

> found -1 1.3.8.c+dfsg-4+deb13u1
Bug #1135119 {Done: Hilmar Preuße <hille42 at debian.org>} [proftpd-core] CVE-2026-42167: SQL injection possible via mod_sql because of is_escaped_text() logic
Marked as found in versions proftpd-dfsg/1.3.8.c+dfsg-4+deb13u1.

-- 
1135119: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1135119
Debian Bug Tracking System
Contact owner at bugs.debian.org with problems



More information about the Pkg-proftpd-maintainers mailing list