Количество 4
Количество 4
CVE-2026-46373
SQLFluff is a modular SQL linter and auto-formatter with support for multiple dialects and templated code. Prior to version 4.1.0, in deployments where untrusted users can provide SQL queries to be linted, an untrusted user can submit a malicious query with deliberate excessive nesting to any application using the parser to trigger a Denial of Service through resource exhaustion. This issue has been patched in version 4.1.0.
CVE-2026-46373
SQLFluff is a modular SQL linter and auto-formatter with support for multiple dialects and templated code. Prior to version 4.1.0, in deployments where untrusted users can provide SQL queries to be linted, an untrusted user can submit a malicious query with deliberate excessive nesting to any application using the parser to trigger a Denial of Service through resource exhaustion. This issue has been patched in version 4.1.0.
CVE-2026-46373
SQLFluff is a modular SQL linter and auto-formatter with support for m ...
GHSA-wmhf-fqc8-vxhh
SQLFluff: Recursive Stack Overflow in Parser
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-46373 SQLFluff is a modular SQL linter and auto-formatter with support for multiple dialects and templated code. Prior to version 4.1.0, in deployments where untrusted users can provide SQL queries to be linted, an untrusted user can submit a malicious query with deliberate excessive nesting to any application using the parser to trigger a Denial of Service through resource exhaustion. This issue has been patched in version 4.1.0. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
CVE-2026-46373 SQLFluff is a modular SQL linter and auto-formatter with support for multiple dialects and templated code. Prior to version 4.1.0, in deployments where untrusted users can provide SQL queries to be linted, an untrusted user can submit a malicious query with deliberate excessive nesting to any application using the parser to trigger a Denial of Service through resource exhaustion. This issue has been patched in version 4.1.0. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
CVE-2026-46373 SQLFluff is a modular SQL linter and auto-formatter with support for m ... | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
GHSA-wmhf-fqc8-vxhh SQLFluff: Recursive Stack Overflow in Parser | CVSS3: 7.5 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу