parse-server is vulnerable to SQL injection
98
Critical Risk
Affected versions of this package are vulnerable to SQL injection.
You are affected if you use a vulnerable version of the package and configure parse-server to use the PostgreSQL database.
parse-server is vulnerable to SQL injection in versions 2.2.14 - 6.5.6 and 7.0.0 - 7.0.0.
Upgrade parse-server to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant