VendorsSQLAlchemymakoany version
Vulnerabilities

SQLAlchemy Mako any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2026-41205
Mako: Path traversal via double-slash URI prefix in TemplateLookup
Published 2026-04-23 · Modified
7.7EPSS 0.005
CVE-2022-40023
Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. This also affects babelplugin and linguaplugin.
Published 2022-09-07 · Modified
7.5EPSS 0.022