Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-71491

14 дней назад

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, group_comments in sqlparse/engine/grouping.py repeatedly rescans comment-only statements before the MAX_GROUPING_TOKENS guard, causing quadratic CPU consumption through sqlparse.parse() and sqlparse.format(sql, strip_comments=True). This issue is fixed in version 0.6.0.

EPSS: Низкий
nvd логотип

CVE-2026-71491

14 дней назад

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, group_comments in sqlparse/engine/grouping.py repeatedly rescans comment-only statements before the MAX_GROUPING_TOKENS guard, causing quadratic CPU consumption through sqlparse.parse() and sqlparse.format(sql, strip_comments=True). This issue is fixed in version 0.6.0.

EPSS: Низкий
debian логотип

CVE-2026-71491

14 дней назад

sqlparse is a non-validating SQL parser module for Python. Prior to 0. ...

EPSS: Низкий
github логотип

GHSA-f2ff-p2ww-7p4p

14 дней назад

sqlparse: Quadratic O(n²) DoS in group_comments

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:3762-1

7 дней назад

Security update for python-sqlparse

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-71491

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, group_comments in sqlparse/engine/grouping.py repeatedly rescans comment-only statements before the MAX_GROUPING_TOKENS guard, causing quadratic CPU consumption through sqlparse.parse() and sqlparse.format(sql, strip_comments=True). This issue is fixed in version 0.6.0.

0%
Низкий
14 дней назад
nvd логотип
CVE-2026-71491

sqlparse is a non-validating SQL parser module for Python. Prior to 0.6.0, group_comments in sqlparse/engine/grouping.py repeatedly rescans comment-only statements before the MAX_GROUPING_TOKENS guard, causing quadratic CPU consumption through sqlparse.parse() and sqlparse.format(sql, strip_comments=True). This issue is fixed in version 0.6.0.

0%
Низкий
14 дней назад
debian логотип
CVE-2026-71491

sqlparse is a non-validating SQL parser module for Python. Prior to 0. ...

0%
Низкий
14 дней назад
github логотип
GHSA-f2ff-p2ww-7p4p

sqlparse: Quadratic O(n²) DoS in group_comments

0%
Низкий
14 дней назад
suse-cvrf логотип
SUSE-SU-2026:3762-1

Security update for python-sqlparse

7 дней назад

Уязвимостей на страницу