Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. This also affects babelplugin and linguaplugin.
| Software | From | Fixed in |
|---|---|---|
| sqlalchemy / mako | - | 1.2.2 |
| debian / debian_linux | 10.0 | 10.0.x |
mako
|
- | 1.2.2 |