Severity: moderate

SQL Injection

sql

Overview

All versions of sql are vulnerable to sql injection as it does not properly escape parameters when building SQL queries.

Remediation

No fix is currently available for this vulnerability. It is our recommendation to not install or use this module until a fix is available.

Resources

Advisory timeline

  1. published

    Advisory published
    May 16th, 2018
  2. reported

    May 16th, 2018