logo

CISA Seeks to Curtail 'Unforgivable' SQL Injection Defects

ID: 7fcef9b0-6a70-5fbd-8afa-a8865e7c446c

STIX ID: report--7fcef9b0-6a70-5fbd-8afa-a8865e7c446c

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2024-03-25

Date Updated: 2026-04-21

Author: Dark Reading Staff

...
...

CISA and the FBI issued a Secure by Design alert warning that persistent SQL injection (CWE-89) flaws—highlighted by a recent widespread exploitation of an SQLi defect in the MoveIT file transfer application—continue to threaten supply chains and that software manufacturers must adopt secure development practices to eliminate these vulnerabilities.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.