npm›pg-promise›CVE-2025-297445.4 MEDIUMpg-promise SQL Injection vulnerabilitypg-promise before 11.5.5 is vulnerable to SQL Injection due to improper handling of negative numbers.