summaryrefslogtreecommitdiff
path: root/django/db/models/sql/__init__.py
diff options
context:
space:
mode:
authorJacob Walls <jacobtylerwalls@gmail.com>2026-01-19 15:42:33 -0500
committerJacob Walls <jacobtylerwalls@gmail.com>2026-02-03 08:14:44 -0500
commit17a1d64a58ef24c0c3b78d66d86f5415075f18f0 (patch)
treea2d750063221c955b394702be8feef7d85090b06 /django/db/models/sql/__init__.py
parent1ba90069c12836db46981bdf75b0e661db5849ce (diff)
[5.2.x] Fixed CVE-2026-1207 -- Prevented SQL injections in RasterField lookups via band index.
Thanks Tarek Nakkouch for the report, and Simon Charette for the initial triage and review. Backport of 81aa5292967cd09319c45fe2c1a525ce7b6684d8 from main.
Diffstat (limited to 'django/db/models/sql/__init__.py')
0 files changed, 0 insertions, 0 deletions