天下漏洞,尽知其名
CRITICAL

CVE-2026-68954 TMS 搜索功能基于时间的盲注 SQL 注入漏洞

原始情报

The “pattern” parameter used in search function in the home page of the TMS application is vulnerable to time-based blind SQL injection vulnerability.