CVEs (1)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Doctrine Project 1Database Abstraction Layer Nov 21, 2024 Dec 9, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Doctrine DBAL 3.x before 3.1.4 allows SQL Injection. The escaping of offset and length inputs to the generation of a LIMIT clause was not probably cast to an integer, allowing SQL injection to take place if application d...Show more |