VYPR

Pygments

by Pygments

pypi: pygments

Source repositories

CVEs (3)

  • CVE-2015-8557CriJan 8, 2016
    risk 0.52cvss 9.0epss 0.07

    The FontManager._get_nix_font_path function in formatters/img.py in Pygments 1.2.2 through 2.0.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a font name.

  • CVE-2026-4539LowMar 22, 2026
    risk 0.14cvss 3.3epss 0.00

    A security flaw has been discovered in pygments up to 2.19.2. The impacted element is the function AdlLexer of the file pygments/lexers/archetype.py. The manipulation results in inefficient regular expression complexity. The attack is only possible with local access. The exploit…

  • CVE-2022-40896Jul 19, 2023
    risk 0.00cvss epss 0.01

    A ReDoS issue was discovered in pygments/lexers/smithy.py in pygments through 2.15.0 via SmithyLexer.