WhisperX tag archive

#database exposure

This page collects WhisperX intelligence signals tagged #database exposure. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-04-25 15:54:07 · GitHub Issues

1. Critical SQL Injection Flaw in /users Endpoint Allows Full Database Exposure

A security audit has identified a critical SQL injection vulnerability in the `/users` endpoint of the affected application, allowing attackers to retrieve all database records by exploiting unsanitized query parameters. The flaw, rated Critical with a CVSS score of 9.8, affects all versions from v1.0.0 through v1.2.0 ...

The Lab · 2026-05-10 14:01:53 · r/selfhosted

2. Docker Silently Bypasses UFW Firewall, Exposing Databases to the Internet

Docker's default port publishing behavior silently circumvents UFW firewall rules on Linux, exposing database ports directly to the internet. The issue is well-documented but continues to catch system administrators and self-hosters off guard, creating persistent attack surfaces on production servers. When Docker publ...