Resolved Only when using H2/MySQL/TiDB as Apache SkyWalking storage, there is a SQL injection vulnerability in the wildcard query cases.
"https://github.com/pypa/advisory-database/blob/main/vulns/apache-skywalking/PYSEC-2020-342.yaml"