A vulnerability classified as critical was found in Mura up to 10.1.13. Impacted is the function
getQuery of the file beanFeed.cfc. Such manipulation of the argument sortDirection leads to sql injection.
This vulnerability is traded as CVE-2025-67829. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.