Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
7.4
CVE-2020-25638
- EPSS 0.51%
- Published 02.12.2020 15:15:12
- Last modified 23.04.2025 20:15:19
A flaw was found in hibernate-core in versions prior to and including 5.4.23.Final. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SQL comments of the query. This flaw could...
6.5
CVE-2019-14900
- EPSS 1.22%
- Published 06.07.2020 19:15:12
- Last modified 21.11.2024 04:27:38
A flaw was found in Hibernate ORM in versions before 5.3.18, 5.4.18 and 5.5.0.Beta1. A SQL injection in the implementation of the JPA Criteria API can permit unsanitized literals when a literal is used in the SELECT or GROUP BY parts of the query. Th...
1