CVE-2023-22580: Sequelizejs Sequelize

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

Due to improper input filtering in the sequalize js library, can malicious queries lead to sensitive information disclosure.

Affected products

  • Sequelizejs Sequelize: before 6.28.1 (fixed in 6.28.1); version 7.0.0 only

Published 2023-02-16. Last modified 2026-06-17.