MariaDB Connector/Node.js 用于将基于 Node.js 开发的应用程序连接到 MariaDB 和 MySQL 数据库。在版本 3.2.0 至 3.2.5、3.3.4、3.4.7 以及 3.5.4 中,如果应用程序启用了 选项,则可能传入其键名会被展开为 SQL SET 子句的对象,而这些键名未经过 函数的处理。攻击者可以构造包含反引号(`)的恶意键名,从而闭合标识符的引用,并使键名的其余部分被解释为 SQL 代码。这可能导致应用程序意外更新未打算暴露的列,并以当前数据库用户的权限追加执行任意
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| mariadb-corporation | mariadb-connector-nodejs | >= 3.2.0, < 3.2.5 |
affected |
>= 3.3.0, < 3.3.4 |
affected | ||
>= 3.4.0, < 3.4.7 |
affected | ||
>= 3.5.0-rc.0, < 3.5.4 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| mariadb-corporation | mariadb-connector-nodejs | >= 3.2.0, < 3.2.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-107383 | 7.5 HIGH | MariaDB Connector/Node.js exposes uninitialized process memory through malformed GeoJSON p |
| CVE-2026-107385 | 7.4 HIGH | MariaDB Connector/Node.js: SQL injection in the text protocol when the session uses NO_BAC |
| CVE-2026-107382 | 5.9 MEDIUM | MariaDB Connector/Node.js: Uncaught exception crashes the client during ed25519 authentica |
No comments yet