CVE-2023-39654

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in pypi/abupy

Identifiers

CVE-2023-39654

Package Slug

pypi/abupy

Vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Description

abupy up to v0.4.0 was discovered to contain a SQL injection vulnerability via the component abupy.MarketBu.ABuSymbol.searchtosymbol_dict.

Affected Versions

All versions up to 0.4.0

Solution

Unfortunately, there is no solution available yet.

Last Modified

2023-09-11

source