CVE-2018-18476

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
7.5
HIGH
Affected
1
PROJECT

Description

mysql-binuuid-rails 1.1.0 and earlier allows SQL Injection because it removes default string escaping for affected database columns.

Store UUIDs in binary MySQL database columns. Saves storage, and increases performance.
GitHubGitHub
60