Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.
{
"cwe_ids": [
"CWE-89"
],
"github_reviewed": true,
"github_reviewed_at": "2022-10-31T18:43:12Z",
"nvd_published_at": "2022-10-26T10:15:00Z",
"severity": "CRITICAL"
}