CVE-2026-107385 | MariaDB Corporation MariaDB Connector Node.js up to 3.2.4/3.3.3/3.4.6/3.5.3 Text Protocol Escaping Connection.escape sql injection
A vulnerability was found in MariaDB Corporation MariaDB Connector Node.js up to 3.2.4/3.3.3/3.4.6/3.5.3. It has been declared as critical. This issue affects the function Connection.escape of the component Text Protocol Escaping. Executing a manipulation can lead to sql injection.
This vulnerability is registered as CVE-2026-107385. It is possible to launch the attack remotely. No exploit is available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More