VYPR

rpm package

suse/python-Jinja2&distro=SUSE Linux Enterprise High Performance Computing 15-ESPOS

pkg:rpm/suse/python-Jinja2&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015-ESPOS

Vulnerabilities (1)

  • CVE-2020-28493Feb 1, 2021
    affected < 2.10.1-3.10.2fixed 2.10.1-3.10.2

    This affects the package jinja2 from 0.0.0 and before 2.11.3. The ReDoS vulnerability is mainly due to the `_punctuation_re regex` operator and its use of multiple wildcards. The last wildcard is the most exploitable as it searches for trailing punctuation. This issue can be miti