CVE-2014-125037: License To Kill Project License To Kill

Critical severity, CVSS 9.8. EPSS: 0.6% chance of exploitation in the next 30 days.

A vulnerability, which was classified as critical, was found in License to Kill. This affects an unknown part of the file models/injury.rb. The manipulation of the argument name leads to sql injection. The patch is named cd11cf174f361c98e9b1b4c281aa7b77f46b5078. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-217191.

Affected products

Published 2023-01-02. Last modified 2026-06-17.