Home

Description

SQL injection vulnerability in tlocke pg8000 1.31.4 allows remote attackers to execute arbitrary SQL commands via a specially crafted Python list input to function pg8000.native.literal.

PUBLISHED Reserved 2025-09-26 | Published 2025-10-27 | Updated 2025-10-28 | Assigner mitre

References

codeberg.org/...mit/8663c746b02286c32f19c385f0e2e5da9e4fa140

github.com/...ulnerability-research/tree/main/CVE-2025-61385

cve.org (CVE-2025-61385)

nvd.nist.gov (CVE-2025-61385)

Download JSON