CVE-2022-29498: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
(updated )
Blazer before 2.6.0 allows SQL Injection. In certain circumstances, an attacker could get a user to run a query they would not have normally run.
References
Detect and mitigate CVE-2022-29498 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →