CRITICAL
laughingman7743
CVE published 2026-08-02
CVE-2026-65321
The CVE-2026-65321 vulnerability exists in PyAthena, a Python package for Amazon Athena, prior to version 3.35.4. The vulnerability class is SQL injection, which allows unauthenticated attackers to inject arbitrary SQL due to improper quote-escaping in DefaultParameterFormatter.format(). The likely operational impact of exploitation could include data exfiltration via UNION SELECT, execution of destructiv [truncated]