CVE advisoryCRITICAL
CVE-2022-0495
Koha library system lets attackers steal or change data because it's missing security.
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
Koha library software has a critical flaw letting attackers steal or change data without logging in. This fix is urgent for any library using this system.