OSV 1.4.0 · github-reviewed · 修改于 2021-09-09 04:06
发布时间
2018-09-10 23:20
GitHub 审查时间
2020-06-17 05:28
NVD 发布时间
—
源文件
advisories/github-reviewed/2018/09/GHSA-9mr8-6prp-gwjv/GHSA-9mr8-6prp-gwjv.json
All versions of query-mysql are vulnerable to SQL injection due to lack of user input sanitization allows to run arbitrary SQL queries when fetching data from database.
No fix is currently available for this vulnerability. It is our recommendation to not install or use this module if user input is passed into this module.