GHSA-h4h6-vccr-44h2
GitHub Security Advisory
uptrace pgdriver SQL injection vulnerability
✓ GitHub Reviewed
MODERATE
Has CVE
Advisory Details
uptrace pgdriver v1.2.1 was discovered to contain a SQL injection vulnerability via the appendArg function in /pgdriver/format.go.
Affected Packages
Go
github.com/uptrace/bun
Affected versions:
0
(last affected: 1.2.14)
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: June 18, 2025 6:25 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.