Описание
go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.
Ссылки
- Product
- https://github.com/go-pg/pg/blob/30e7053c6cacdd44d06cf2b92183b49188b7c922/types/append_value.go#L151Product
- Exploit
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:uptrace:pg:10.13.0:*:*:*:*:go:*:*
EPSS
Процентиль: 11%
0.00037
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-89
Связанные уязвимости
CVSS3: 6.5
ubuntu
8 месяцев назад
go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerability via the component /types/append_value.go.
CVSS3: 6.5
debian
8 месяцев назад
go-pg pg v10.13.0 was discovered to contain a SQL injection vulnerabil ...
CVSS3: 6.5
github
8 месяцев назад
go-pg SQL injection vulnerability via the component /types/append_value.go
EPSS
Процентиль: 11%
0.00037
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-89