PostgreSQL client - pure javascript & libpq with the same API
90%
Total Score
98
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2017-16082 pg is vulnerable to Improper Control of Generation of Code ('Code Injection') in versions 0.0.0 - 2.11.2, 3.0.0 - 3.6.4, 4.0.0 - 4.5.7, 5.0.0 - 5.2.1, 6.0.0 - 6.0.5, 6.1.0 - 6.1.6, 6.2.0 - 6.2.5, 6.3.0 - 6.3.3, 6.4.0 - 6.4.2, 7.0.0 - 7.0.2 and 7.1.0 - 7.1.2. | 0.0.0 - 2.11.23.0.0 - 3.6.44.0.0 - 4.5.7 +8 more | Critical |
| Dependency | Last Release | Score |
|---|---|---|
pgpass Version 1.0.5 | — | — |
pg-pool Version ^3.13.0 | — | — |
pg-types Version 2.2.0 | — | — |
pg-protocol Version ^1.13.0 | — | — |
pg-cloudflare Version ^1.3.0 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant