Description
Due to improper input filtering in the sequalize js library, can malicious queries lead to sensitive information disclosure.
Remediation
References
https://csirt.divd.nl/CVE-2023-22580
https://csirt.divd.nl/DIVD-2022-00020/
Related Vulnerabilities
CVE-2020-14195 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2021-27905 Vulnerability in maven package org.apache.solr:solr-core
CVE-2022-34112 Vulnerability in maven package io.dataease:dataease-plugin-common
CVE-2022-44730 Vulnerability in maven package org.apache.xmlgraphics:batik-script
CVE-2019-17572 Vulnerability in maven package org.apache.rocketmq:rocketmq-broker