CVE-2025-69662

Publication date

2026-01-30 00:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in geopandas before v.1.1.2 allows an attacker to obtain sensitive information via the to_postgis()` function being used to write GeoDataFrames to a PostgreSQL database.