CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 10.0. It involves a SQL injection risk.
CVE
CVE-2022-2422
Severity
CRITICAL
CVSS
10
EPSS
0.73%
Original NVD Description
Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.
Related CVEs
Other vulnerabilities affecting the same vendor(s)