CVE-2016-10554
31.05.2018, 20:29
sequelize is an Object-relational mapping, or a middleman to convert things from Postgres, MySQL, MariaDB, SQLite and Microsoft SQL Server into usable data for NodeJS. Before version 1.7.0-alpha3, sequelize defaulted SQLite to use MySQL backslash escaping, even though SQLite uses Postgres escaping.
Vendor | Product | Version |
---|---|---|
sequelizejs | sequelize | 𝑥 ≤ 1.6.0 |
sequelizejs | sequelize | 1.7.0:alpha1 |
sequelizejs | sequelize | 1.7.0:alpha2 |
𝑥
= Vulnerable software versions