Skip to content
Noroxi

sequelizejs records

14 published records for vendor sequelizejs.

All records

14 records
  • sequelize is an Object-relational mapping, or a middleman to convert things from Postgres, MySQL, MariaDB, SQLite and Microsoft SQL Server i

    CriticalCVSS 9.8No exploitEPSS 2%

    sequelizejs · sequelizeMay 31, 2018

  • sequelize is an Object-relational mapping, or a middleman to convert things from Postgres, MySQL, MariaDB, SQLite and Microsoft SQL Server i

    CriticalCVSS 9.8No exploitEPSS 2%

    sequelizejs · sequelizeMay 31, 2018

  • Sequelize, all versions prior to version 4.44.3 and 5.15.1, is vulnerable to SQL Injection due to sequelize.json() helper function not escap

    CriticalCVSS 9.8No exploitEPSS 1%

    sequelizejs · sequelizeOct 17, 2019

  • SQL Injection via replacements in sequelize

    CriticalCVSS 9.8Proof of conceptEPSS 1%

    sequelizejs · sequelizeFeb 22, 2023

  • Sequelize all versions prior to 3.35.1, 4.44.3, and 5.8.11 are vulnerable to SQL Injection due to JSON path keys not being properly escaped

    CriticalCVSS 9.8No exploitEPSS 1%

    sequelizejs · sequelizeOct 29, 2019

  • sequelize is an Object-relational mapping, or a middleman to convert things from Postgres, MySQL, MariaDB, SQLite and Microsoft SQL Server i

    CriticalCVSS 9.8No exploitEPSS 1%

    sequelizejs · sequelizeMay 31, 2018

  • sequelize before version 3.35.1 allows attackers to perform a SQL Injection due to the JSON path keys not being properly sanitized in the Po

    CriticalCVSS 9.8No exploitEPSS 1%

    sequelizejs · sequelizeOct 29, 2019

  • Sequalize - Default support for “raw attributes” when using parentheses

    CriticalCVSS 9.8No exploitEPSS 1%

    sequelizejs · sequelizeFeb 16, 2023

  • Sequalize - Unsafe fall-through in getWhereConditions

    HighCVSS 8.8No exploitEPSS 1%

    sequelizejs · sequelizeFeb 16, 2023

  • Sequelize version 5 before 5.3.0 does not properly ensure that standard conforming strings are used.

    HighCVSS 7.5No exploitEPSS 2%

    sequelizejs · sequelizeApr 10, 2019

  • sequelize is an Object-relational mapping, or a middleman to convert things from Postgres, MySQL, MariaDB, SQLite and Microsoft SQL Server i

    HighCVSS 7.5No exploitEPSS 1%

    sequelizejs · sequelizeMay 29, 2018

  • Sequalize - Bad query filtering leading to SQL errors

    HighCVSS 7.5No exploitEPSS 1%

    sequelizejs · sequelizeFeb 16, 2023

  • Sequelize v6 Vulnerable to SQL Injection via JSON Column Cast Type

    HighCVSS 7.5Proof of conceptEPSS 0%

    sequelizejs · sequelizeMar 10, 2026

  • CVE-2023-6293
    28Monitor

    Prototype Pollution in robinbuschmann/sequelize-typescript

    HighCVSS 7.1No exploitEPSS 1%

    sequelizejs · sequelize-typescriptNov 24, 2023