Known Vulnerabilities for products from Knexjs
Listed below are 2 of the newest known vulnerabilities associated with the vendor "Knexjs".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-10757 json | knex.js versions before 0.19.5 are vulnerable to SQL Injection attack. Identifiers are escaped incorrectly as part of the MSS... | 9.8 - CRITICAL | 2019-10-08 | 2019-10-15 |
| CVE-2016-20018 json | Knex Knex.js through 2.3.0 has a limited SQL injection vulnerability that can be exploited to ignore the WHERE clause of a SQ... | 7.5 - HIGH | 2022-12-19 | 2023-11-23 |
Known software with vulnerabilities from Knexjs
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Knexjs | Knex | 0 |