Home

Description

Tillywork v0.1.3 and below is vulnerable to SQL Injection in app/common/helpers/query.builder.helper.ts.

PUBLISHED Reserved 2025-09-26 | Published 2025-10-17 | Updated 2025-10-17 | Assigner mitre

References

github.com/...mmits/c57171fd17a857d7ec79e9051b23ace98d5c6a17

www.secstrike.ai/...llywork-sql-injection-public-disclosure/

cve.org (CVE-2025-60514)

nvd.nist.gov (CVE-2025-60514)

Download JSON