CVE-2024-36039 Information

Description

PyMySQL through 1.1.0 allows SQL injection if used with untrusted JSON input because keys are not escaped by escape_dict.

Reference

https://github.com/PyMySQL/PyMySQL/releases/tag/v1.1.1

Share on: