CVE-2025-60542 | TypeORM 0.3.26 Request repository.save/repository.update sql injection
A vulnerability was found in TypeORM 0.3.26. It has been declared as critical. This affects the function repository.save/repository.update of the component Request Handler. Executing manipulation can lead to sql injection.
This vulnerability appears as CVE-2025-60542. The attack may be performed from remote. There is no available exploit.
It is recommended to upgrade the affected component.