CVE-2024-4340: Sqlparse Project Sqlparse
High severity, CVSS 7.5. EPSS: 3.2% chance of exploitation in the next 30 days.
Passing a heavily nested list to sqlparse.parse() leads to a Denial of Service due to RecursionError.
Affected products
- Sqlparse Project Sqlparse: version 0 only
Published 2024-04-30. Last modified 2026-06-17.