A ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | No solution existsUpgrade pygments | May 15, 2025 | Jul 19, 2023 |
| Huawei Euleros 2_0_sp11 | — | Upgrade python3-pygmentsUpgrade python-pygments-help | Jan 10, 2024 | Jul 19, 2023 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jul 19, 2023 |
| Splunk | — | Upgrade Splunk Enterprise to version 9.1.5Upgrade Splunk Enterprise to version 9.0.10Upgrade Splunk Enterprise to version 9.2.2 | Sep 30, 2025 | Jul 19, 2023 |
| Ubuntu | — | Upgrade python3-pygments | Nov 27, 2024 | Jul 19, 2023 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | Jun 29, 2026 | Jul 19, 2023 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub