Headline
GHSA-4r6j-fwcx-94cf: snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI package, when an attacker is able to supply arbitrary input to the get_file_transfer_type method
snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)
Moderate severity GitHub Reviewed Published Nov 10, 2022 • Updated Nov 10, 2022
Related news
CVE-2022-42965: snowflake-connector-python ReDoS | XRAY-257185
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI package, when an attacker is able to supply arbitrary input to the get_file_transfer_type method