Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-4r6j-fwcx-94cf: snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI package, when an attacker is able to supply arbitrary input to the get_file_transfer_type method

ghsa
#dos#git

snowflake-connector-python is vulnerable to Regular Expression Denial of Service (ReDoS)

Moderate severity GitHub Reviewed Published Nov 10, 2022 • Updated Nov 10, 2022

Related news

CVE-2022-42965: snowflake-connector-python ReDoS | XRAY-257185

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the snowflake-connector-python PyPI package, when an attacker is able to supply arbitrary input to the get_file_transfer_type method