CVE-2023-6293: Prototype Pollution in robinbuschmann/sequelize-typescript
Prototype Pollution in GitHub repository robinbuschmann/sequelize-typescript prior to 2.1.6.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-6293.
What is the title of this vulnerability?
The title of this vulnerability is Prototype Pollution in robinbuschmann/sequelize-typescript.
What is the description of this vulnerability?
The description of this vulnerability is Prototype Pollution in GitHub repository robinbuschmann/sequelize-typescript prior to 2.1.6.
What software is affected by this vulnerability?
The software affected by this vulnerability is Sequelizejs Sequelize-typescript version up to exclusive 2.1.6.
What is the severity of this vulnerability?
The severity of this vulnerability is high with a score of 7.5.
How can I fix this vulnerability?
To fix this vulnerability, update the Sequelize-typescript package to version 2.1.6 or higher.
Where can I find more information about this vulnerability?
You can find more information about this vulnerability in the following references: [Huntr](https://huntr.com/bounties/36a7ecbf-4d3d-462e-86a3-cda7b1ec64e2), [GitHub commit](https://github.com/robinbuschmann/sequelize-typescript/commit/5ce8afdd1671b08c774ce106b000605ba8fccf78).
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is 1321.