Description
Due to improper input filtering in the sequalize js library, can malicious queries lead to sensitive information disclosure.
Remediation
References
https://csirt.divd.nl/CVE-2023-22580
https://csirt.divd.nl/DIVD-2022-00020/
Related Vulnerabilities
CVE-2016-10535 Vulnerability in npm package csrf-lite
CVE-2018-1000614 Vulnerability in maven package org.onosproject:onos-netconf-provider-alarm
CVE-2023-24807 Vulnerability in maven package org.webjars.npm:undici
CVE-2016-15026 Vulnerability in maven package com.googlecode.plist:dd-plist
CVE-2023-34455 Vulnerability in maven package org.xerial.snappy:snappy-java