go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.
| Software | From | Fixed in |
|---|---|---|
github.com/go-pg/pg/v9
|
- | 9.2.1.x |
github.com/go-pg/pg
|
- | 8.0.7.x |
| uptrace / pg | 10.13.0 | 10.13.0.x |
github.com/go-pg/pg/v10
|
- | 10.15.0 |