GHSA-r3jc-3qmm-w3pw
GitHub Security Advisory
SQLAlchemyDA unauthenticated arbitrary SQL query execution
✓ GitHub Reviewed
CRITICAL
Has CVE
Advisory Details
### Impact
The vulnerability allows unauthenticated execution of arbitrary SQL statements on the database the SQLAlchemyDA instance is connected to. All users are affected.
### Patches
The problem has been patched in version 2.2.
### Workarounds
There is no workaround. All users are urged to upgrade to version 2.2
Affected Packages
PyPI
Products.SQLAlchemyDA
Affected versions:
0
(fixed in 2.2)
Related CVEs
Key Information
9.0
/10
Dataset
Last updated: July 13, 2025 6:28 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.