CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107384

HIGHCVSS 8.1NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

MariaDB Connector/Node.js is used to connect applications developed on Node.js to MariaDB and MySQL databases. From 3.2.0 until 3.2.5, 3.3.4, 3.4.7, and 3.5.4, applications that enable permitSetMultiParamEntries can pass objects whose keys are expanded into a SQL SET clause without being processed b

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-107384 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-107384

HIGHCVSS 8.1NVD feed

Published 8 October 2026 · tracked since 9 October 2026

Description

MariaDB Connector/Node.js is used to connect applications developed on Node.js to MariaDB and MySQL databases. From 3.2.0 until 3.2.5, 3.3.4, 3.4.7, and 3.5.4, applications that enable permitSetMultiParamEntries can pass objects whose keys are expanded into a SQL SET clause without being processed b

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]