Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-qpv8-4pjq-qqh7: PENDING feathers-sequelize contains improper input validation leading to SQL injection

Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.

ghsa
#sql#js#git

PENDING feathers-sequelize contains improper input validation leading to SQL injection

Critical severity GitHub Reviewed Published Oct 26, 2022 • Updated Oct 31, 2022

Related news

CVE-2022-2422

Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.

CVE-2022-2422: Redirecting…

Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.