GHSA-5v9h-q3gj-c32x

Suggest an improvement
Source
https://github.com/advisories/GHSA-5v9h-q3gj-c32x
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2020/09/GHSA-5v9h-q3gj-c32x/GHSA-5v9h-q3gj-c32x.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-5v9h-q3gj-c32x
Aliases
  • CVE-2016-1000225
Published
2020-09-01T15:27:40Z
Modified
2023-11-08T03:58:07Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
SQL Injection via GeoJSON in sequelize
Details

Affected versions of sequelize are vulnerable to SQL Injection in Models that have fields with the GEOMETRY DataType. This vulnerability occurs because single quotes in document values are not escaped for GeoJSON documents using ST_GeomFromGeoJSON, and MySQL GeoJSON documents using GeomFromText.

Recommendation

Update to version 3.23.6 or later.

Database specific
{
    "cwe_ids":  [
        "CWE-89"
    ],
    "github_reviewed":  true,
    "github_reviewed_at":  "2020-08-31T18:11:32Z",
    "nvd_published_at":  null,
    "severity":  "CRITICAL"
}
References

Affected packages

npm / sequelize

Package

Affected ranges

Type
SEMVER
Events
Introduced
3.4.0
Fixed
3.23.6

Database specific

source
"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2020/09/GHSA-5v9h-q3gj-c32x/GHSA-5v9h-q3gj-c32x.json"