In Pylons Colander through 1.6, the URL validator allows an attacker to potentially cause an infinite loop thereby causing a denial of service via an unclosed parenthesis.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| colander(PyPI) | 0 | 1.7.0 | N/A |
CVSS Metrics