Package compatibility

SQLAlchemy

Python requirements from PyPI (requires_python / classifiers) for the SQLAlchemy package. This is not a lifecycle software page.

Compatibility is derived from PyPI requires_python and Trove classifiers. CompatHub does not independently test every combination.

Version lines

Each line reflects a declared requires_python tip. Requirement changes across tips appear as separate lines when present.

Known vulnerabilities

Recent OSV.dev advisories mapped to this product. CVSS/CWE from NVD and known-exploited status from CISA KEV when available. CompatHub is not the original vulnerability authority.

  • CVE-2012-0805GHSA-hfg2-wf6j-x53p

    SQLAlchemy vulnerable to SQL injection

    Affected:
    <0.7.0b4
    Fixed in:
    0.7.0b4
    Source:
    OSV source · Advisory
  • CVE-2019-7164GHSA-887w-45rq-vxgf

    SQLAlchemy vulnerable to SQL Injection via order_by parameter

    Affected:
    <1.3.0b3
    Fixed in:
    1.3.0b3
    Source:
    OSV source · Advisory
  • CVE-2019-7548GHSA-38fc-9xqv-7f7q

    SQLAlchemy is vulnerable to SQL Injection via group_by parameter

    Affected:
    <1.2.19
    Fixed in:
    1.2.19
    Source:
    OSV source · Advisory
  • CVE-2019-7164PYSEC-2019-123
    Affected:
    <1.3.0b3
    Fixed in:
    1.3.0b3
    Source:
    OSV source · Advisory
  • CVE-2019-7548PYSEC-2019-124
    Affected:
    <1.2.18
    Fixed in:
    1.2.18
    Source:
    OSV source · Advisory
  • CVE-2012-0805PYSEC-2012-9
    Affected:
    <0.7.0
    Fixed in:
    0.7.0
    Source:
    OSV source · Advisory