Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29222
HistoryFeb 03, 2021 - 4:49 a.m.

Query Binding Exploitation

2021-02-0304:49:20
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
illuminate/database
query binding
exploitation
vulnerability
cve-2021-21263
fix

EPSS

0.001

Percentile

39.7%

illuminate/database is vulnerable to query binding exploitation. The vulnerability exists through the lack of control on the expected bindings in the Query Builder. This vulnerability is related to CVE-2021-21263. The fix addresses several edge cases.