NA

CVE-2024-21509

Published: 10/04/2024 Updated: 10/04/2024

Vulnerability Summary

Versions of the package mysql2 prior to 3.9.4 are vulnerable to Prototype Poisoning due to insecure results object creation and improper user input sanitization passed through parserFn in text_parser.js and binary_parser.js.