Denial of Service Vulnerability in Pygments Parser from Pygments Vendor
CVE-2021-27291
7.5HIGH
What is CVE-2021-27291?
Pygments, a popular syntax highlighter, contains a vulnerability in its lexer implementation where some regular expressions exhibit exponential or cubic worst-case complexity. This flaw can be exploited by attackers who craft malicious inputs that trigger extensive backtracking in the regex engine, leading to denial of service conditions. This vulnerability affects versions 1.1 and above, and has been addressed in the latest update (2.7.4). Users are encouraged to update to the fixed version to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
