discourse/lib/topic_query
Joffrey JAFFEUX 0a664f73f5 SECURITY: SQL injection in PM tag filtering
SQL injection in PM tag filtering (`list_private_messages_tag`) allows bypassing tag filter conditions, potentially disclosing unauthorized private message metadata.
2026-02-26 12:22:54 +00:00
..
private_message_lists.rb SECURITY: SQL injection in PM tag filtering 2026-02-26 12:22:54 +00:00