Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: SQL injection when using Parse Server with PostgreSQL #9168

Merged
merged 2 commits into from
Jun 30, 2024

Conversation

mtrezza
Copy link
Member

@mtrezza mtrezza commented Jun 30, 2024

Fixes security vulnerability GHSA-c2hr-cqg6-8j6r

Copy link

parse-github-assistant bot commented Jun 30, 2024

Thanks for opening this pull request!

  • ❌ Please link an issue that describes the reason for this pull request, otherwise your pull request will be closed. Make sure to write it as Closes: #123 in the PR description, so I can recognize it.

@mtrezza mtrezza changed the base branch from alpha to release-6.x.x June 30, 2024 01:23
@mtrezza mtrezza changed the title fix: 8j6r release 6 fix: SQL injection when using Parse Server with PostgreSQL Jun 30, 2024
@mtrezza mtrezza closed this Jun 30, 2024
@mtrezza mtrezza reopened this Jun 30, 2024
@mtrezza mtrezza merged commit f332d54 into parse-community:release-6.x.x Jun 30, 2024
24 of 26 checks passed
parseplatformorg pushed a commit that referenced this pull request Jun 30, 2024
## [6.5.7](6.5.6...6.5.7) (2024-06-30)

### Bug Fixes

* SQL injection when using Parse Server with PostgreSQL; fixes security vulnerability [GHSA-c2hr-cqg6-8j6r](GHSA-c2hr-cqg6-8j6r) ([#9168](#9168)) ([f332d54](f332d54))
@parseplatformorg
Copy link
Contributor

🎉 This change has been released in version 6.5.7

@mtrezza mtrezza deleted the fix/8j6r-release-6 branch June 30, 2024 01:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants