ZeroHour

CVE-2021-20270

CVSS 3.1
7.5 high
EPSS
3%p85
Published
()
Modified
Description

An infinite loop in SMLLexer in Pygments versions 1.5 to 2.7.3 may lead to denial of service when performing syntax highlighting of a Standard ML (SML) source file, as demonstrated by input that only contains the "exception" keyword.

Vendors
pygmentsredhatfedoraprojectdebian
Products
pygments, openshift container platform, openstack platform, software collections, enterprise linux, fedora, debian linux
Weakness
CWE-835
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.