Skip to content

Instantly share code, notes, and snippets.

@CafeD1
Last active April 1, 2026 07:05
Show Gist options
  • Select an option

  • Save CafeD1/21c32edbf1b63fd88a79c290ed2a8059 to your computer and use it in GitHub Desktop.

Select an option

Save CafeD1/21c32edbf1b63fd88a79c290ed2a8059 to your computer and use it in GitHub Desktop.
CVE-2026-30273
[CVE ID]
CVE-2026-30273
[PRODUCT]
pands-ai
[VERSION]
pandsai<=3.0.0
[PROBLEM TYPE]
SQL Injection
[DESCRIPTION]
A SQL injection vulnerability in pandsai allows an attacker to read arbitrary files from the database server by injecting crafted input into the prompt.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment