Couchbase Sync GatewayGHSA-g622-r636-qfqh
SQL Injection in Couchbase Sync Gateway
Critical9.8CVE-2019-9039 · Published Feb 15, 2022 · updated Nov 8, 2023
The Couchbase Sync Gateway 2.1.2 in combination with a Couchbase Server is affected by a previously undisclosed N1QL-injection vulnerability in the REST API. An attacker with access to the public REST API can insert additional N1QL statements through the parameters ?startkey? and ?endkey? of the ?_all_docs? endpoint.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| github.com/couchbase/sync_gateway Go | < 2.5.0 | 2.5.0 |
Details and references
- CVSS 3.0
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-89
- Also known as
- CVE-2019-9039
- nvd.nist.gov/vuln/detail/CVE-2019-9039
- github.com/couchbase/sync_gateway/commit/97adb5b496aa96aa70398018ea96da913ffd8d8c
- docs.couchbase.com/sync-gateway/2.5/release-notes.html
- research.hisolutions.com/2019/06/n1ql-injection-in-couchbase-sync-gateway-cve-2019-9039
- www.couchbase.com/resources/security#SecurityAlerts
More Couchbase Sync Gateway advisories
All Couchbase Sync Gateway| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Jul 292025 | Couchbase Sync Gateway shows cleartext passwords in redacted and unredacted output | High7.3 | 3.2.6 |