There is a SQL injection in Benutzerverwaltung in REDAXO before 5.6.4.Referenceshttps://github.com/redaxo/redaxo/releases/tag/5.6.4