Safety vulnerability ID: 49742
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Pyngo 1.3.0 changes a requirement to "django<4" to include a security fix.
Latest version: 2.3.0
Pydantic Package for Adding Models into a Django or Django Rest Framework Project ✨
CVE-2022-34265: Potential SQL injection via `Trunc(kind)` and `Extract(lookup_name)` arguments `Trunc()` and `Extract()` database functions were subject to SQL injection if untrusted data was used as a `kind/lookup_name` value.
What's Changed
* Loosen Django pinned requirements by alysivji in https://github.com/yezz123/pyngo/pull/27
New Contributors
* alysivji made their first contribution in https://github.com/yezz123/pyngo/pull/27
**Full Changelog**: https://github.com/yezz123/pyngo/compare/1.2.0...1.3.0
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application