Releases57
Frequency2 months 2 weeks
Last Release
Stars543
💾 A database layer with a familiar PDO-like API but much more powerful. Building queries, advanced joins, drivers for MySQL, PostgreSQL, SQLite, MS SQL Server and Oracle.

CVE History

CVEPublishedCVSS v3CVSS v2
9.8 CRITICAL

Nette Database through 3.2.4 allows SQL injection in certain situations involving an untrusted filter that is directly passed to the where method. NOTE: the vendor's position is that this is intended behavior.