FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

PuppetDB -- SQL Injection

Affected packages
puppetdb6 < 6.17.0
puppetdb7 < 7.4.1

Details

VuXML ID 41bc849f-d5ef-11eb-ae37-589cfc007716
Discovery 2021-06-24
Entry 2021-06-25

Puppet reports:

Fixed an issue where someone with the ability to query PuppetDB could arbitrarily write, update, or delete data CVE-2021-27021 PDB-5138.

References

CVE Name CVE-2021-27021
URL https://puppet.com/security/cve/cve-2021-27021/
URL https://tickets.puppetlabs.com/browse/PDB-5138