Django 3.1.x before 3.1.13 and 3.2.x before 3.2.5 allows QuerySet.orderby SQL injection if orderby is untrusted input from a client of a web application.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-35042.json"