vulnerability
Red Hat: CVE-2019-7548: CVE-2019-7548 python-sqlalchemy: SQL Injection when the group_by parameter can be controlled (Multiple Advisories)
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
7 | (AV:N/AC:M/Au:N/C:P/I:P/A:P) | Feb 6, 2019 | May 8, 2019 | Jul 9, 2025 |
Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Feb 6, 2019
Added
May 8, 2019
Modified
Jul 9, 2025
Description
SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled.
Solution(s)
no-fix-redhat-rpm-packageredhat-upgrade-babelredhat-upgrade-python-nose-docsredhat-upgrade-python-psycopg2-docredhat-upgrade-python-pymongo-docredhat-upgrade-python-sqlalchemy-docredhat-upgrade-python-virtualenv-docredhat-upgrade-python2redhat-upgrade-python2-attrsredhat-upgrade-python2-babelredhat-upgrade-python2-backportsredhat-upgrade-python2-backports-ssl_match_hostnameredhat-upgrade-python2-bsonredhat-upgrade-python2-bson-debuginforedhat-upgrade-python2-chardetredhat-upgrade-python2-coverageredhat-upgrade-python2-coverage-debuginforedhat-upgrade-python2-cythonredhat-upgrade-python2-cython-debuginforedhat-upgrade-python2-debugredhat-upgrade-python2-debuginforedhat-upgrade-python2-debugsourceredhat-upgrade-python2-develredhat-upgrade-python2-dnsredhat-upgrade-python2-docsredhat-upgrade-python2-docs-inforedhat-upgrade-python2-docutilsredhat-upgrade-python2-funcsigsredhat-upgrade-python2-idnaredhat-upgrade-python2-ipaddressredhat-upgrade-python2-jinja2redhat-upgrade-python2-libsredhat-upgrade-python2-lxmlredhat-upgrade-python2-lxml-debuginforedhat-upgrade-python2-markupsaferedhat-upgrade-python2-mockredhat-upgrade-python2-noseredhat-upgrade-python2-numpyredhat-upgrade-python2-numpy-debuginforedhat-upgrade-python2-numpy-docredhat-upgrade-python2-numpy-f2pyredhat-upgrade-python2-pipredhat-upgrade-python2-pluggyredhat-upgrade-python2-psycopg2redhat-upgrade-python2-psycopg2-debugredhat-upgrade-python2-psycopg2-debug-debuginforedhat-upgrade-python2-psycopg2-debuginforedhat-upgrade-python2-psycopg2-testsredhat-upgrade-python2-pyredhat-upgrade-python2-pygmentsredhat-upgrade-python2-pymongoredhat-upgrade-python2-pymongo-debuginforedhat-upgrade-python2-pymongo-gridfsredhat-upgrade-python2-pymysqlredhat-upgrade-python2-pysocksredhat-upgrade-python2-pytestredhat-upgrade-python2-pytest-mockredhat-upgrade-python2-pytzredhat-upgrade-python2-pyyamlredhat-upgrade-python2-pyyaml-debuginforedhat-upgrade-python2-requestsredhat-upgrade-python2-rpm-macrosredhat-upgrade-python2-scipyredhat-upgrade-python2-scipy-debuginforedhat-upgrade-python2-setuptoolsredhat-upgrade-python2-setuptools_scmredhat-upgrade-python2-sixredhat-upgrade-python2-sqlalchemyredhat-upgrade-python2-testredhat-upgrade-python2-tkinterredhat-upgrade-python2-toolsredhat-upgrade-python2-urllib3redhat-upgrade-python2-virtualenvredhat-upgrade-python2-wheelredhat-upgrade-python3-bsonredhat-upgrade-python3-bson-debuginforedhat-upgrade-python3-docsredhat-upgrade-python3-docutilsredhat-upgrade-python3-noseredhat-upgrade-python3-pygmentsredhat-upgrade-python3-pymongoredhat-upgrade-python3-pymongo-debuginforedhat-upgrade-python3-pymongo-gridfsredhat-upgrade-python3-pymysqlredhat-upgrade-python3-scipyredhat-upgrade-python3-scipy-debuginforedhat-upgrade-python3-sqlalchemyredhat-upgrade-python3-virtualenvredhat-upgrade-python3-wheelredhat-upgrade-python36redhat-upgrade-python36-debugredhat-upgrade-python36-develredhat-upgrade-python36-rpm-macros

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.