WhisperX tag archive

#cvss-8.8

This page collects WhisperX intelligence signals tagged #cvss-8.8. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-04-23 04:54:08 · GitHub Issues

1. CodeQL Flags High-Severity SQL Injection in updateProductReviews.ts — CVSS 8.8

A CodeQL security scan has identified a SQL injection vulnerability in `routes/updateProductReviews.ts` at line 18, scoring 8.8 on the CVSS scale. The automated analysis detected that database query objects depend on user-provided values without adequate sanitization, creating a direct path for injection attacks. The f...

The Lab · 2026-05-14 13:48:31 · GitHub Issues

2. Entity Framework Core SQL Server Package Exposes eShop Demo to Seven Security Flaws

A security scan of the deltaHotelNine-Security-Demos/_demo_eShop_SCA repository has identified seven vulnerabilities linked to the microsoft.entityframeworkcore.sqlserver.7.0.5.nupkg package, with the highest reaching a CVSS score of 8.8. The findings, detected in commit a8031bc149a00a5a9a8174a98c957d42a9fc018a, point ...