Products
Resources
Community
Company
Go back
Elixir Ecto lacks a protection mechanism around `is_nil` and `raise`
severity
critical
date
January 10, 2023
Affecting
Ecto version 2.2.0
CVE
CVE-2017-20166
CVE type
Incorrect Comparison
CVSS
9.8
CVSS V3 Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
References
GHSA-4r2f-6fm9-2qgh
Elixir Ecto PR 2125