WhisperX tag archive

#npm-audit

This page collects WhisperX intelligence signals tagged #npm-audit. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-05-03 14:54:10 · GitHub Issues

1. Drizzle ORM SQL Injection Flaw Forces Emergency Dependency Audit on Booster-AI Codebase

A HIGH severity SQL injection vulnerability in Drizzle ORM versions prior to 0.45.2 has surfaced within the Booster-AI project, triggering an urgent dependency audit and blocking the CI pipeline's security gate. The flaw, catalogued as GHSA-gpj5-g38j-94v9, stems from improperly escaped SQL identifiers and was uncovered...