Geopandas is a Python library that extends pandas for geospatial data manipulation and analysis, combining tabular operations with geographic object handling. Its vulnerability profile centers on SQL injection risks within its spatial query and data-processing workflows, reflecting the injection-prone boundary between user-supplied geographic parameters and database backends. Current vulnerability counts, severity distribution, exploitation activity, and remediation status are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Geopandas over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-69662HIGH SQL injection vulnerability in geopandas before v.1.1.2 allows an attacker to obtain sensitive information via the to_postgis()` function being used to write GeoDataFrames to a Pos | Jan 30, 2026 | 8.6 | 29 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Geopandas.
Media articles that mention a CVE ID that affects a product developed by Geopandas — matched by CVE ID, not by vendor name.