USN-8765-1: python-sql vulnerability
Ubuntu patches python-sql SQL injection flaw where values passed to unary operators are incorrectly escaped.
Ubuntu Security Notice USN-8765-1 fixes a vulnerability in python-sql discovered by Cedric Krier. The library incorrectly escaped values passed to unary operators, allowing an attacker to potentially perform SQL injection attacks against applications using the library.
18