Skip to content

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Oct 28, 2025

This PR contains the following updates:

Package Change Age Confidence
pg8000 ==1.29.4==1.31.5 age confidence
pg8000 ==1.31.2==1.31.5 age confidence

GitHub Vulnerability Alerts

CVE-2025-61385

SQL injection vulnerability in tlocke pg8000 1.31.4 allows remote attackers to execute arbitrary SQL commands via a specially crafted Python list input to function pg8000.native.literal.


Configuration

📅 Schedule: Branch creation - "" in timezone America/Vancouver, Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about these updates again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot force-pushed the renovate/pypi-pg8000-vulnerability branch 3 times, most recently from 94f0efd to 7d1c3f5 Compare November 3, 2025 22:36
@renovate renovate bot force-pushed the renovate/pypi-pg8000-vulnerability branch 4 times, most recently from 0dfb6ba to 992ace7 Compare November 25, 2025 20:48
@renovate renovate bot force-pushed the renovate/pypi-pg8000-vulnerability branch 3 times, most recently from 90b9f98 to 0f26925 Compare December 3, 2025 04:36
@renovate renovate bot force-pushed the renovate/pypi-pg8000-vulnerability branch 2 times, most recently from b10eb63 to 6df6b87 Compare December 11, 2025 09:13
@renovate renovate bot force-pushed the renovate/pypi-pg8000-vulnerability branch from 6df6b87 to 760d6a1 Compare December 17, 2025 00:37
@renovate renovate bot force-pushed the renovate/pypi-pg8000-vulnerability branch 2 times, most recently from 13014c5 to 826cff2 Compare January 7, 2026 10:55
@renovate renovate bot force-pushed the renovate/pypi-pg8000-vulnerability branch from 826cff2 to 64c0d1b Compare January 8, 2026 00:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant