CVE-2019-15562
26.08.2019, 13:15
GORM before 1.9.10 allows SQL injection via incomplete parentheses. NOTE: Misusing Gorm by passing untrusted user input where Gorm expects trusted SQL fragments is a vulnerability in the application, not in Gorm
Vendor | Product | Version |
---|---|---|
gorm | gorm | 𝑥 < 1.9.10 |
𝑥
= Vulnerable software versions
References