Known Vulnerabilities for products from Sqlalchemy

Listed below are 3 of the newest known vulnerabilities associated with the vendor "Sqlalchemy".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2019-7548 SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled. 7.8 - HIGH 2019-02-06 2021-11-30
CVE-2019-7164 SQLAlchemy through 1.2.17 and 1.3.x through 1.3.0b2 allows SQL Injection via the order_by parameter. 9.8 - CRITICAL 2019-02-20 2021-12-03
CVE-2012-0805 Multiple SQL injection vulnerabilities in SQLAlchemy before 0.7.0b4, as used in Keystone, allow remote attackers to execute a... 7.5 - HIGH 2012-06-05 2018-01-18

Known software with vulnerabilities from Sqlalchemy

Type Vendor Product Version
ApplicationSqlalchemySqlalchemy0.1.0