Knex Knex.js through 2.3.0 has a limited SQL injection vulnerability that can be exploited to ignore the WHERE clause of a SQL query.
Metrics
Affected Vendors & Products
References
History
Sat, 12 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|

Status: PUBLISHED
Assigner: mitre
Published: 2022-12-19T00:00:00
Updated: 2024-08-06T03:47:34.947Z
Reserved: 2022-12-19T00:00:00
Link: CVE-2016-20018

No data.

Status : Modified
Published: 2022-12-19T09:15:09.290
Modified: 2024-11-21T02:47:34.203
Link: CVE-2016-20018

No data.