Total vulnerabilities in the database
Keys of objects in mysql node module v2.0.0-alpha7 and earlier are not escaped with mysql.escape()
which could lead to SQL Injection.
Software | From | Fixed in |
---|---|---|
mysqljs / mysql | - | 0.9.6.x |
mysqljs / mysql | 2.0.0-alpha | 2.0.0-alpha.x |
mysqljs / mysql | 2.0.0-alpha2 | 2.0.0-alpha2.x |
mysqljs / mysql | 2.0.0-alpha3 | 2.0.0-alpha3.x |
mysqljs / mysql | 2.0.0-alpha4 | 2.0.0-alpha4.x |
mysqljs / mysql | 2.0.0-alpha7 | 2.0.0-alpha7.x |
mysqljs / mysql | 2.0.0-preview | 2.0.0-preview.x |
![]() |
- | 2.0.0-alpha8 |