> Debian Request Tracker Important SQL Injection Risk DSA-6327-1
[DATE: 07/06/2026 23:25]
[LANGUAGE: EN]
Multiple vulnerabilities have been discovered in Request Tracker, an extensible trouble-ticket tracking system, which could result privilege escalation, information disclosure, SQL injections, LDAP authentication bypass, cross-site scripting or spreadsheet (CSV/formula) injection. For the oldstable distribution (bookworm), these problems have been fixed