SQL injection In pg8000
Description
pg8000 SQL injection vulnerability via a specially crafted Python list input SQL injection vulnerability in tlocke pg8000 1.31.4 allows remote attackers to execute arbitrary SQL commands via a specially crafted Python list input to function pg8000.native.literal.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
pypi | 1.31.5 |
Aliases
1. 2. 3. 4.
References
1. 2.