Pygments 2.0

CPE Details

Pygments 2.0
2.0
2016-01-13
18h05 +00:00
2016-01-13
18h05 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:pygments:pygments:2.0:*:*:*:*:*:*:*

Informations

Vendor

pygments

Product

pygments

Version

2.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-40896 2023-07-18 22h00 +00:00 A ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer.
5.5
Medium
CVE-2021-20270 2021-03-23 15h40 +00:00 An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.
7.5
High
CVE-2021-27291 2021-03-17 11h31 +00:00 In pygments 1.1+, fixed in 2.7.4, the lexers used to parse programming languages rely heavily on regular expressions. Some of the regular expressions have exponential or cubic worst-case complexity and are vulnerable to ReDoS. By crafting malicious input, an attacker can cause a denial of service.
7.5
High
CVE-2015-8557 2016-01-08 19h00 +00:00 The FontManager._get_nix_font_path function in formatters/img.py in Pygments 1.2.2 through 2.0.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a font name.
9
Critical