web2py / pydal

A pure Python Database Abstraction Layer
BSD 3-Clause "New" or "Revised" License
493 stars 137 forks source link

GHSL-2021-116 #669

Closed kevinbackhouse closed 3 years ago

kevinbackhouse commented 3 years ago

Hello,

The GitHub Security Lab team has found a potential vulnerability in your project. Please create a Security Advisory and invite me in to further disclose and discuss the vulnerability details and potential fix. Alternatively, please add a Security Policy containing a security email address to send the details to.

If you prefer to contact us by email, please reach out to securitylab@github.com with reference to GHSL-2021-116.

Thank you,
Kevin Backhouse GitHub Security Lab

kevinbackhouse commented 3 years ago

Thank you for opening the draft advisory!