SQL injection vulnerability in long2ice assyncmy thru 0.2.10 allows attackers to execute arbitrary SQL commands via crafted dict keys.
References
| Link | Resource |
|---|---|
| https://github.com/long2ice/asyncmy | Product |
| https://github.com/long2ice/asyncmy/issues/134 | Issue Tracking |
Configurations
History
19 Dec 2025, 18:23
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://github.com/long2ice/asyncmy - Product | |
| References | () https://github.com/long2ice/asyncmy/issues/134 - Issue Tracking | |
| First Time |
Long2ice asyncmy
Long2ice |
|
| CPE | cpe:2.3:a:long2ice:asyncmy:*:*:*:*:*:*:*:* |
03 Dec 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
| CWE | CWE-89 |
02 Dec 2025, 19:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-02 19:15
Updated : 2025-12-19 18:23
NVD link : CVE-2025-65896
Mitre link : CVE-2025-65896
CVE.ORG link : CVE-2025-65896
JSON object : View
Products Affected
long2ice
- asyncmy
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
