SQL injection vulnerability in Vanderbilt REDCap before v.13.8.0 allows a remote attacker to obtain sensitive information via the password reset mechanism in MyCapMobileApp/update.php.Referenceshttps://www.project-redcap.org/https://github.com/ntrampham/REDCap