Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| feathers-sequelize(npm) | 6.0.0 | 6.3.4 | N/A |
CVSS Metrics