Logo
vulnerabilityCVE-2026-4539
Name
CVE-2026-4539
Source
NVD ( link)Debian ( link)
Description
A security flaw has been discovered in pygments up to 2.19.2. The impacted element is the function AdlLexer of the file pygments/lexers/archetype.py. The manipulation results in inefficient regular expression complexity. The attack is only possible with local access. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report but has not responded yet.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
python-pygments
Exploitable

Vulnerability Ratings#


1.9
CVSSv4
3.3
CVSSv31
1.7
CVSSv2
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
2.19.1
Exploitable
openwrt
master
2.20.0-r2
Exploitable