VYPR

Py

by Pytest

CVEs (2)

  • CVE-2022-42969MedOct 16, 2022
    risk 0.35cvss 5.3epss 0.02

    The py library through 1.11.0 for Python allows remote attackers to conduct a ReDoS (Regular expression Denial of Service) attack via a Subversion repository with crafted info data, because the InfoSvnCommand argument is mishandled. Note: This has been disputed by multiple third…

  • CVE-2020-29651HigDec 9, 2020
    risk 0.00cvss 7.5epss 0.05

    A denial of service via regular expression in the py.path.svnwc component of py (aka python-py) through 1.9.0 could be used by attackers to cause a compute-time denial of service attack by supplying malicious input to the blame functionality.