Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-2987
  • PyPI/pygments
Pygments has Regular Expression Denial of Service (ReDoS) due to Inefficient Regex for GUID Matching 13 Jul
  • Fix available
  • Severity - 1.9 (Low)
GHSA-5239-wwwm-4pmq
  • PyPI/pygments
Pygments has Regular Expression Denial of Service (ReDoS) due to Inefficient Regex for GUID Matching 22 Mar
  • Fix available
  • Severity - 1.9 (Low)
MAL-2025-191654
  • PyPI/pygments-richstyle
Malicious code in pygments-richstyle (PyPI) 31 Oct 2025
  • No fix available
PYSEC-2025-8
  • PyPI/pygments-style-solarized
After the owner removed the project from PyPI, another user uploaded a new version with non-working code 17 Mar 2025
  • No fix available
GHSA-mrwq-x4v8-fh7p
  • PyPI/pygments
Pygments vulnerable to ReDoS 19 Jul 2023
  • Fix available
  • Severity - 6.8 (Medium)
PYSEC-2023-117
  • PyPI/pygments
See record for full details 19 Jul 2023
  • Fix available
GHSA-fff8-4w9p-7v76
  • PyPI/pygments
Command Injection in Pygments 17 May 2022
  • Fix available
  • Severity - 9.5 (Critical)
GHSA-9w8r-397f-prfh
  • PyPI/pygments
Infinite Loop in Pygments 20 Apr 2021
  • Fix available
  • Severity - 8.7 (High)
GHSA-pq64-v7f5-gqh8
  • PyPI/pygments
Pygments vulnerable to Regular Expression Denial of Service (ReDoS) 29 Mar 2021
  • Fix available
  • Severity - 8.7 (High)
PYSEC-2021-140
  • PyPI/pygments
See record for full details 23 Mar 2021
  • Fix available
PYSEC-2021-141
  • PyPI/pygments
  • github.com/pygments/pygments
See record for full details 17 Mar 2021
  • Fix available
PYSEC-2016-32
  • PyPI/pygments
See record for full details 08 Jan 2016
  • Fix available