VYPR
Critical severity9.8NVD Advisory· Published Aug 26, 2019· Updated Jun 17, 2026

CVE-2019-15562

CVE-2019-15562

Description

GORM before 1.9.10 allows SQL injection via incomplete parentheses. NOTE: Misusing Gorm by passing untrusted user input where Gorm expects trusted SQL fragments is a vulnerability in the application, not in Gorm

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • GORM/GORM2 versions
    cpe:2.3:a:gorm:gorm:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:gorm:gorm:*:*:*:*:*:*:*:*range: <1.9.10
    • (no CPE)range: <1.9.10
  • GORM/GORMdescription

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.