Skip to content

SQLAlchemy: bind query parameters - #1247

Open
tomkralidis wants to merge 1 commit into
masterfrom
sqlachemy-bindparam
Open

SQLAlchemy: bind query parameters#1247
tomkralidis wants to merge 1 commit into
masterfrom
sqlachemy-bindparam

Conversation

@tomkralidis

@tomkralidis tomkralidis commented Aug 16, 2026

Copy link
Copy Markdown
Member

Overview

This PR fixes pygeofilter text expressions to use SQLAlchemy's bindparams functionality to safeguard incoming filters/queries.

Related Issue / Discussion

None

Additional Information

None

Contributions and Licensing

(as per https://github.com/geopython/pycsw/blob/master/CONTRIBUTING.rst#contributions-and-licensing)

  • I'd like to contribute [feature X|bugfix Y|docs|something else] to pycsw. I confirm that my contributions to pycsw will be compatible with the pycsw license guidelines at the time of contribution.
  • I have already previously agreed to the pycsw Contributions and Licensing Guidelines

@tomkralidis tomkralidis added this to the 3.0.0 milestone Aug 16, 2026
@tomkralidis

Copy link
Copy Markdown
Member Author

CI failures (trivy) are unrelated.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant