—
GO-2026-5640
Daptin: SQL injection via unvalidated goqu.L() calls in aggregate API in github.com/daptin/daptin
Quick fix
GO-2026-5640 — github.com/daptin/daptin: upgrade to the fixed version with the command below.
go get github.com/daptin/daptin@v0.11.4Details
Daptin: SQL injection via unvalidated goqu.L() calls in aggregate API in github.com/daptin/daptin
Are you affected?
Enter the version of the package you're using.
Affected packages
Go/github.com/daptin/daptin
Introduced in:
0Fixed in: 0.11.4Fix
go get github.com/daptin/daptin@v0.11.4