VYPR

Remarshal

by remarshal-project

pypi: remarshal

Source repositories

CVEs (1)

  • CVE-2023-47163Nov 13, 2023
    risk 0.00cvss epss 0.01

    Remarshal prior to v0.17.1 expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack. Processing untrusted YAML files may cause a denial-of-service (DoS) condition.