An issue was discovered in TestLink 1.9.19. The relation_type parameter of the lib/requirements/reqSearch.php endpoint is vulnerable to authenticated SQL Injection.Referenceshttps://github.com/TestLinkOpenSourceTRMS/testlink-code/pull/239https://github.com/ver007/testlink-1.9.19-sqlinject