CVE Database
/

CVE-2015-9244

Back to search

CVE-2015-9244

Published: May 29, 2018

Modified: Sep 16, 2024

PUBLISHED

Description

Keys of objects in mysql node module v2.0.0-alpha7 and earlier are not escaped with `mysql.escape()` which could lead to SQL Injection.

VendorProductVersions

HackerOne

mysql node module

affected
<=v2.0.0-alpha7

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now