Описание
PyMySQL through 1.1.0 allows SQL injection if used with untrusted JSON input because keys are not escaped by escape_dict.
Релиз | Статус | Примечание |
---|---|---|
devel | released | 1.1.1-1ubuntu1 |
esm-infra/bionic | needs-triage | |
esm-infra/focal | not-affected | 0.9.3-2ubuntu3.1 |
esm-infra/xenial | needs-triage | |
focal | released | 0.9.3-2ubuntu3.1 |
jammy | released | 1.0.2-1ubuntu1.22.04.1 |
mantic | released | 1.0.2-1ubuntu1.23.10.1 |
noble | released | 1.0.2-2ubuntu1.1 |
oracular | released | 1.1.1-1ubuntu1 |
plucky | released | 1.1.1-1ubuntu1 |
Показывать по
10
EPSS
Процентиль: 20%
0.00062
Низкий
6.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 6.3
redhat
около 1 года назад
PyMySQL through 1.1.0 allows SQL injection if used with untrusted JSON input because keys are not escaped by escape_dict.
CVSS3: 6.3
nvd
около 1 года назад
PyMySQL through 1.1.0 allows SQL injection if used with untrusted JSON input because keys are not escaped by escape_dict.
CVSS3: 6.3
debian
около 1 года назад
PyMySQL through 1.1.0 allows SQL injection if used with untrusted JSON ...
EPSS
Процентиль: 20%
0.00062
Низкий
6.3 Medium
CVSS3