Executive brief
DB-GPT is vulnerable to SQL Injection attacks from unauthenticated users
Affected products
- PyPI dbgpt
Junglewise Threat Intelligence
CVE-2024-10835 · Severity: low · CVSS 3 · Published 2026-06-29
Technologies: dbgpt (PyPI). Vendors: PyPI.
DB-GPT is vulnerable to SQL Injection attacks from unauthenticated users