typeorm vulnerabilities
CVEs whose affected-version data names the typeorm package (npm). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.
2 CVEsRSS
GHSA-2rp8-mm9q-fp49Medium· 5.7TypeORM: migration:generate template-literal code injection
TypeORM: migration:generate template-literal code injection
▾ Sunlittypeorm · typeormvia GHSA
GHSA-9ggv-8w38-r7pmMedium· 5.9TypeORM: SQL Injection in UpdateQueryBuilder/SoftDeleteQueryBuilder orderBy (MySQL/MariaDB)
TypeORM: SQL Injection in UpdateQueryBuilder/SoftDeleteQueryBuilder orderBy (MySQL/MariaDB)
▾ Sunlittypeorm · typeormvia GHSA