In Pylons Colander through 1.6, the URL validator allows an attacker to potentially cause an infinite loop thereby causing a denial of service via an unclosed parenthesis.
{ "binaries": [ { "binary_version": "1.0b1-3", "binary_name": "python-colander" }, { "binary_version": "1.0b1-3", "binary_name": "python3-colander" } ] }