In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade dataprof to version 0.4.5 or higher.
dataprof is a High-performance data profiler with ISO 8000/25012 quality metrics for CSV, JSON/JSONL, and Parquet files
Affected versions of this package are vulnerable to SQL Injection via the database connector query construction logic. An attacker can inject arbitrary SQL commands by supplying crafted input during database profiling operations, as user-controlled values are incorporated into SQL statements without proper parameterization when querying PostgreSQL, MySQL, or SQLite sources.