parse-community / parse-server

Parse Server for Node.js / Express
https://parseplatform.org
Apache License 2.0
20.69k stars 4.76k forks source link

fix: SQL injection when using Parse Server with PostgreSQL #9167

Closed mtrezza closed 3 days ago

mtrezza commented 3 days ago

Fixes security vulnerability GHSA-c2hr-cqg6-8j6r

parse-github-assistant[bot] commented 3 days ago

Thanks for opening this pull request!

codecov[bot] commented 3 days ago

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Project coverage is 94.14%. Comparing base (665b8d5) to head (18f85e6). Report is 1 commits behind head on alpha.

Additional details and impacted files ```diff @@ Coverage Diff @@ ## alpha #9167 +/- ## ========================================== - Coverage 94.15% 94.14% -0.01% ========================================== Files 186 186 Lines 14726 14727 +1 ========================================== Hits 13865 13865 - Misses 861 862 +1 ```

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.

parseplatformorg commented 3 days ago

🎉 This change has been released in version 7.1.0-alpha.12

parseplatformorg commented 3 days ago

🎉 This change has been released in version 7.1.0-beta.1

parseplatformorg commented 3 days ago

🎉 This change has been released in version 7.1.0