HIGH7.1PyPI
GHSA-f964-whrq-44h8· CVE-2026-27953, PYSEC-2026-2247ormar Pydantic Validation Bypass via __pk_only__ and __excluded__ Kwargs Injection in Model Constructor
Modified: 7/13/2026
package
pkg:pypi/ormar
ormar Pydantic Validation Bypass via __pk_only__ and __excluded__ Kwargs Injection in Model Constructor
Modified: 7/13/2026
ormar is vulnerable to SQL Injection through aggregate functions min() and max()
Modified: 6/29/2026
Modified: 7/13/2026
ormar is vulnerable to SQL Injection through aggregate functions min() and max()
Modified: 7/13/2026