SQLite through 3.40.0, when relying on --safe for execution of an untrusted CLI script, does not properly implement the azProhibitedFunctions protection mechanism, and instead allows UDF functions such as WRITEFILE.
https://cert-portal.siemens.com/productcert/html/ssa-556635.html
https://blog.trailofbits.com/2024/01/24/celebrating-our-2023-open-source-contributions/
https://sqlite.org/src/info/cefc032473ac5ad2