CVE-2023-26448
Custom log-in and log-out locations are used-defined as jslob but…
Functions with insufficient randomness were used to generate authorization tokens…
Full-text autocomplete search allows user-provided SQL syntax to be injected…
Frontend themes are defined by user-controllable jslob settings and could…