In Zalando Skipper before 0.13.218, a query predicate could be bypassed via a prepared request.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-34296.json"