Skip to content

[Snyk:Medium] Regular Expression Denial of Service (ReDoS) - due (6/18/2026) #7056

@pkfec

Description

@pkfec

Overview

Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) via the AdlLexer class in the archetype.py file. A user can cause excessive resource consumption.

Security information

Factors contributing to the scoring:
Snyk: CVSS v4.0 4.8 - Medium Severity | CVSS v3.1 3.3 - Low Severity
NVD: CVSS v3.1 3.3 - Low Severity
Why are the scores different? Learn how Snyk evaluates vulnerability scores

Introduced thruogh

pdbpp@0.11.7

Action item

  • No remediation available as of 03/25/2026
  • upgrade pdbpp (may be)

Completion criteria

  • vulnerability is remediated

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    Projects

    Status

    No status

    Milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions