QID 980869
QID 980869: Python (pip) Security Update for colander (GHSA-rv95-4wxj-6fqq)
In Pylons Colander through 1.6, the URL validator allows an attacker to potentially cause an infinite loop thereby causing a denial of service via an unclosed parenthesis.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-rv95-4wxj-6fqq for updates pertaining to this vulnerability.
Vendor References
- GHSA-rv95-4wxj-6fqq -
github.com/advisories/GHSA-rv95-4wxj-6fqq
CVEs related to QID 980869
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-rv95-4wxj-6fqq | colander |
|