This site is an independent open-source project and is not affiliated with, endorsed by, or sponsored by npm, Inc. or GitHub, Inc. The name “npm” is a registered trademark of npm, Inc., used here solely to describe compatibility and reference publicly available npm package data.
Version Details and Security Vulnerabilities
📦
pg-promise
11.5.3
Comparision Betweeen 11.5.3 and 11.5.2
Identify the differences between the current version of the package and the previous one.
Version
Dependencies
4
4
Dev Dependencies
12
0
Peer Dependencies
12
0
Distributed Files
53
53
Unpacked Size
413.08 KB
413.08 KB
Security Vulnerabilities
Security Details
Comprehensive list of direct or transitive vulnerabilities for version 11.5.3 of the package pg-promise.
All Security Vulnerabilities
All the vulnerabilities related to the version 11.5.3 of the package
Summary:
pg-promise SQL Injection vulnerability
Details:
pg-promise before 11.5.5 is vulnerable to SQL Injection due to improper handling of negative numbers.