pygmentize Remote Code Execution
High severity
GitHub Reviewed
Published
May 15, 2024
to the GitHub Advisory Database
•
Updated May 15, 2024
Description
Published to the GitHub Advisory Database
May 15, 2024
Reviewed
May 15, 2024
Last updated
May 15, 2024
pygmentize is prone to remote code execution due to an unsafe sanitazation of user input when passed to the
highlight
function.References