VYPR
Critical severity10.0NVD Advisory· Published Oct 26, 2022· Updated Jun 17, 2026

CVE-2022-2422

CVE-2022-2422

Description

Due to improper input validation in the Feathers js library, it is possible to perform a SQL injection attack on the back-end database, in case the feathers-sequelize package is used.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
feathers-sequelizenpm
>= 6.0.0, < 6.3.46.3.4

Affected products

2

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.