CVE-2024-54446 — Document history functionality contains a blind SQL injection that can be exploited by authenticated attackers. Using a time-based blind SQLi technique the attacker can disclose all database contents. — CVE Database · The Intelligence Room