{"id":"GHSA-4mg9-vhxq-vm7j","aliases":[],"url":"https://o3.security/vulnerability/GHSA-4mg9-vhxq-vm7j","summary":"SQL Server LIMIT / OFFSET SQL Injection in laravel/framework and illuminate/database","details":"### Impact\n\nThose using SQL Server with Laravel and allowing user input to be passed directly to the `limit` and `offset` functions are vulnerable to SQL injection. Other database drivers such as MySQL and Postgres are not affected by this vulnerability.\n\n### Patches\n\nThis problem has been patched on Laravel versions 6.20.26, 7.30.5, and 8.40.0.\n\n### Workarounds\n\nYou may workaround this vulnerability by ensuring that only integers are passed to the `limit` and `offset` functions, as well as the `skip` and `take` functions.\n","published":"2021-04-29T21:52:53Z","modified":"2024-12-02T05:40:15.245335Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"laravel/framework","fixedVersion":"8.40.0"},{"ecosystem":"Packagist","name":"laravel/framework","fixedVersion":"6.20.26"},{"ecosystem":"Packagist","name":"illuminate/database","fixedVersion":"8.40.0"},{"ecosystem":"Packagist","name":"illuminate/database","fixedVersion":"6.20.26"}],"fix":null,"references":[{"type":"WEB","url":"https://github.com/laravel/framework/security/advisories/GHSA-4mg9-vhxq-vm7j"},{"type":"PACKAGE","url":"https://github.com/laravel/framework"},{"type":"WEB","url":"https://packagist.org/packages/illuminate/database"},{"type":"WEB","url":"https://packagist.org/packages/laravel/framework"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2024-12-02T05:40:15.245335Z"}}