cve/2019/CVE-2019-10748.md
2024-06-09 00:33:16 +00:00

706 B

CVE-2019-10748

Description

Sequelize all versions prior to 3.35.1, 4.44.3, and 5.8.11 are vulnerable to SQL Injection due to JSON path keys not being properly escaped for the MySQL/MariaDB dialects.

POC

Reference

Github