the Mako authors and contributors

1 exploit Active since Sep 2022
CVE-2022-40023 WRITEUP HIGH WRITEUP
Mako < 1.2.2 - Regular Expression Denial of Service via Lexer Class
Sqlalchemy mako before 1.2.2 is vulnerable to Regular expression Denial of Service when using the Lexer class to parse. This also affects babelplugin and linguaplugin.
CVSS 7.5