Agentejo Cockpit before 0.11.2 allows NoSQL injection via the Controller/Auth.php check function. The $eq operator matches documents where the value of a field equals the specified value.
View the template here CVE-2020-35846.yaml
References:
https://nvd.nist.gov/vuln/detail/CVE-2020-35846