Headline
GHSA-5jqp-885w-xj32: pymatgen is vulnerable to Regular Expression Denial of Service (ReDoS)
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the pymatgen PyPI package, when an attacker is able to supply arbitrary input to the GaussianInput.from_string method
pymatgen is vulnerable to Regular Expression Denial of Service (ReDoS)
Moderate severity GitHub Reviewed Published Nov 10, 2022 • Updated Nov 10, 2022
Related news
CVE-2022-42964: pymatgen ReDoS | XRAY-257184
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the pymatgen PyPI package, when an attacker is able to supply arbitrary input to the GaussianInput.from_string method