Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
2242828
AlmaLinux
5975
Alpaquita
16176
Alpine
4655
Android
3708
Azure Linux
17971
BellSoft Hardened Containers
770
Bitnami
9501
Chainguard
1048720
CleanStart
5479
CRAN
14
crates.io
2768
Debian
68992
Echo
7853
GHC
3
GIT
109121
GitHub Actions
55
Go
9332
Hackage
33
Hex
365
Julia
1713
Linux
29975
Mageia
6237
Maven
7055
MinimOS
148659
npm
229272
NuGet
1869
opam
29
openEuler
8900
openSUSE
14647
OSS-Fuzz
4019
Packagist
7103
Pub
11
PyPI
25495
Red Hat
23535
Rocky Linux
4354
Root
19651
RubyGems
5369
SUSE
23455
SwiftURL
61
TuxCare
9974
Ubuntu
66090
VSCode
21
Wolfi
293843
ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-3923
PyPI/sqlparse
sqlparse: Reindentation of tuple lists causes near-cap quadratic CPU consumption
10 Sep
Fix available
Severity - 5.1 (Medium)
GHSA-cfqr-cjx5-5jcm
PyPI/sqlparse
sqlparse: Reindentation of tuple lists causes near-cap quadratic CPU consumption
01 Sep
Fix available
Severity - 5.1 (Medium)
PYSEC-2026-3698
PyPI/sqlparse
sqlparse: Inefficient Regex Handling of Dollar-Quoted SQL Literals Leads to ReDoS (Denial of Service)
19 Aug
Fix available
Severity - 7.5 (High)
PYSEC-2026-3699
PyPI/sqlparse
sqlparse: TokenList.__init__ materializes O(subtree) value per group, causing CPU DoS before depth/token caps trigger
19 Aug
Fix available
Severity - 8.7 (High)
PYSEC-2026-3697
PyPI/sqlparse
sqlparse: Quadratic O(n²) DoS in group_comments
19 Aug
Fix available
Severity - 8.7 (High)
PYSEC-2026-3696
PyPI/sqlparse
sqlparse: Generated Python and PHP snippets allow SQL string breakout through unescaped backslashes
19 Aug
Fix available
Severity - 6.2 (Medium)
GHSA-prg7-hcfm-mfcr
PyPI/sqlparse
sqlparse: Inefficient Regex Handling of Dollar-Quoted SQL Literals Leads to ReDoS (Denial of Service)
17 Aug
Fix available
Severity - 7.5 (High)
GHSA-pwgv-4x5q-6m9f
PyPI/sqlparse
sqlparse: TokenList.__init__ materializes O(subtree) value per group, causing CPU DoS before depth/token caps trigger
17 Aug
Fix available
Severity - 8.7 (High)
GHSA-f2ff-p2ww-7p4p
PyPI/sqlparse
sqlparse: Quadratic O(n²) DoS in group_comments
17 Aug
Fix available
Severity - 8.7 (High)
GHSA-3496-9g83-7v6x
PyPI/sqlparse
sqlparse: Generated Python and PHP snippets allow SQL string breakout through unescaped backslashes
17 Aug
Fix available
Severity - 6.2 (Medium)
PYSEC-2026-1940
PyPI/sqlparse
sqlparse parsing heavily nested list leads to Denial of Service
07 Jul
Fix available
Severity - 7.5 (High)
GHSA-27jp-wm6q-gp25
PyPI/sqlparse
sqlparse: formatting list of tuples leads to denial of service
13 Feb
Fix available
Severity - 6.9 (Medium)
GHSA-2m57-hf25-phgg
PyPI/sqlparse
sqlparse parsing heavily nested list leads to Denial of Service
15 Apr 2024
Fix available
Severity - 7.5 (High)
GHSA-rrm6-wvj7-cwh2
PyPI/sqlparse
sqlparse contains a regular expression that is vulnerable to Regular Expression Denial of Service
21 Apr 2023
Fix available
Severity - 6.9 (Medium)
PYSEC-2023-87
PyPI/sqlparse
github.com/andialbrecht/sqlparse
See record for full details
18 Apr 2023
Fix available
PYSEC-2021-333
PyPI/sqlparse
github.com/andialbrecht/sqlparse
See record for full details
20 Sep 2021
Fix available
Load more...
PyPI - OSV