CVE-2019-14939

MEDIUM5.5EPSS 0.06%

MySQL for Node.js Unsafe Options

Published: 5/24/2022Modified: 11/8/2023
Also known as:GHSA-f982-mxwc-3mrxDEBIAN-CVE-2019-14939

Description

An issue was discovered in the mysql (aka mysqljs) module 2.17.1 for Node.js. `The LOAD DATA LOCAL INFILE` option is open by default.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.5CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

References (7)