Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerability CVE-2016-20018  #5500

Closed
gamboaa opened this issue Mar 1, 2023 · 1 comment
Closed

Vulnerability CVE-2016-20018  #5500

gamboaa opened this issue Mar 1, 2023 · 1 comment

Comments

@gamboaa
Copy link

gamboaa commented Mar 1, 2023

Consider addressing vulnerability

CVE-2016-20018 (OSSINDEX) 

knex - SQL Injection

The software constructs all or part of an SQL command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended SQL command when it is sent to a downstream component.

CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

@OlivierCavadenti
Copy link
Collaborator

Tracked in #1227

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants