Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-qhqw-rrw9-25rm: assyncmy is vulnerable to SQL injection via crafted dict keys

SQL injection vulnerability in long2ice assyncmy thru 0.2.10 allows attackers to execute arbitrary SQL commands via crafted dict keys.

ghsa
#sql#vulnerability#git#intel

Skip to content

Navigation Menu

    • AI CODE CREATION

      • GitHub CopilotWrite better code with AI

      • GitHub SparkBuild and deploy intelligent apps

      • GitHub ModelsManage and compare prompts

      • MCP RegistryNewIntegrate external tools

View all features
  • Pricing

Provide feedback

Saved searches****Use saved searches to filter your results more quickly

Sign up

Appearance settings

  1. GitHub Advisory Database
  2. GitHub Reviewed
  3. CVE-2025-65896

assyncmy is vulnerable to SQL injection via crafted dict keys

Critical severity GitHub Reviewed Published Dec 2, 2025 to the GitHub Advisory Database • Updated Dec 3, 2025

Package

pip asyncmy (pip)

Affected versions

<= 0.2.10

Description

Published to the GitHub Advisory Database

Dec 2, 2025

EPSS score

ghsa: Latest News

GHSA-fmh4-wr37-44fp: React Server Components are Vulnerable to RCE