VDB

GCVE-VVD-MAGEIA-2021-245

GCVE-VVD-MAGEIA-2021-245
Advisory Published
Vulnetix · Advisory published June 13, 2021
In pygments 1.1+, fixed in 2.7.4, the lexers used to parse programming languages rely heavily on regular expressions. Some of the regular expressions have exponential or cubic worst-case complexity and are vulnerable to ReDoS. By crafting malicious input, an attacker can cause a denial of service (CVE-2021-27291).

Affected Products

VendorProductVersionsPlatforms
Mageiapython-pygments0 (affected), 2.3.1-1.2.mga7 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›