Fizzday maintains a database abstraction and ORM library in the Gorose product, where the vulnerability footprint centers on SQL-injection weaknesses in query construction and parameter handling. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fizzday over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-9047CRITICAL GoRose v1.0.4 has SQL Injection when the order_by or group_by parameter can be controlled. | Feb 23, 2019 | 9.8 | 29 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fizzday.
Media articles that mention a CVE ID that affects a product developed by Fizzday — matched by CVE ID, not by vendor name.