<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T14:09:12.404765+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-03345</id>
    <title>bdu:2023-03345</title>
    <updated>2026-10-03T14:09:12.899897+00:00</updated>
    <content>bdu:2023-03345</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-03345"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/brew-athenacli-cve-2023-30608</id>
    <title>BREW-athenacli-CVE-2023-30608 — sqlparse contains a regular expression that is vulnerable to Regular Expression Denial of Service</title>
    <updated>2026-10-03T14:09:12.899954+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Homebrew: athenacli</p>
<p>### Impact
The SQL parser contains a regular expression that is vulnerable to [ReDoS](https://owasp.org/www-community/attacks/Regular_expression_Denial_of_Service_-_ReDoS) (Regular Expression Denial of Service). The vulnerability may lead to Denial of Service (DoS).</p>
<p>### Patches
This issues has been fixed in sqlparse 0.4.4.</p>
<p>### Workarounds
None.</p>
<p>### References
This issue was discovered and reported by GHSL team member [@erik-krogh (Erik Krogh Kristensen)](https://github.com/erik-krogh).
- Commit that introduced the vulnerability: e75e35869473832a1eb67772b1adfee2db11b85a</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/brew-athenacli-cve-2023-30608"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-258411</id>
    <title>EUVD-2026-258411</title>
    <updated>2026-10-03T14:09:12.899997+00:00</updated>
    <content>EUVD-2026-258411</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-258411"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-30608</id>
    <title>fkie_cve-2023-30608</title>
    <updated>2026-10-03T14:09:12.900013+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>sqlparse is a non-validating SQL parser module for Python. In affected versions the SQL parser contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service). This issue was introduced by commit `e75e358`. The vulnerability may lead to Denial of Service (DoS). This issues has been fixed in sqlparse 0.4.4 by commit `c457abd5f`. Users are advised to upgrade. There are no known workarounds for this issue.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-30608"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-rrm6-wvj7-cwh2</id>
    <title>GHSA-rrm6-wvj7-cwh2 — sqlparse contains a regular expression that is vulnerable to Regular Expression Denial of Service</title>
    <updated>2026-10-03T14:09:12.900038+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: sqlparse</p>
<p>### Impact
The SQL parser contains a regular expression that is vulnerable to [ReDoS](https://owasp.org/www-community/attacks/Regular_expression_Denial_of_Service_-_ReDoS) (Regular Expression Denial of Service). The vulnerability may lead to Denial of Service (DoS).</p>
<p>### Patches
This issues has been fixed in sqlparse 0.4.4.</p>
<p>### Workarounds
None.</p>
<p>### References
This issue was discovered and reported by GHSL team member [@erik-krogh (Erik Krogh Kristensen)](https://github.com/erik-krogh).
- Commit that introduced the vulnerability: e75e35869473832a1eb67772b1adfee2db11b85a</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-rrm6-wvj7-cwh2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-30608</id>
    <title>gsd-2023-30608</title>
    <updated>2026-10-03T14:09:12.900063+00:00</updated>
    <content>gsd-2023-30608</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-30608"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2023-1279</id>
    <title>OESA-2023-1279 — python-sqlparse security update</title>
    <updated>2026-10-03T14:09:12.900075+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: python-sqlparse, openEuler:20.03-LTS-SP3: python-sqlparse, openEuler:22.03-LTS: python-sqlparse, openEuler:22.03-LTS-SP1: python-sqlparse</p>
<p>sqlparse is a non-validating SQL parser module. It provides support for parsing, splitting and formatting SQL statements.

Security Fix(es):

sqlparse is a non-validating SQL parser module for Python. In affected versions the SQL parser contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service). This issue was introduced by commit `e75e358`. The vulnerability may lead to Denial of Service (DoS). This issues has been fixed in sqlparse 0.4.4 by commit `c457abd5f`. Users are advised to upgrade. There are no known workarounds for this issue.
(CVE-2023-30608)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2023-1279"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12957-1</id>
    <title>openSUSE-SU-2024:12957-1 — python310-sqlparse-0.4.4-1.1 on GA media</title>
    <updated>2026-10-03T14:09:12.900103+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>python310-sqlparse-0.4.4-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:12957-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/pysec-2023-87</id>
    <title>PYSEC-2023-87</title>
    <updated>2026-10-03T14:09:12.900121+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: sqlparse</p>
<p>sqlparse is a non-validating SQL parser module for Python. In affected versions the SQL parser contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service). This issue was introduced by commit `e75e358`. The vulnerability may lead to Denial of Service (DoS). This issues has been fixed in sqlparse 0.4.4 by commit `c457abd5f`. Users are advised to upgrade. There are no known workarounds for this issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/pysec-2023-87"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2023:4591</id>
    <title>RHSA-2023:4591 — Red Hat Security Advisory: RHUI 4.5.0 release - Security, Bug Fixes, and Enhancements</title>
    <updated>2026-10-03T14:09:12.900141+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>sqlparse: Parser contains a regular expression that is vulnerable to ReDOS (Regular Expression Denial of Service) python-django: Potential bypass of validation when uploading multiple files using one form field</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2023:4591"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-ru-2024:1637-2</id>
    <title>SUSE-RU-2024:1637-2 — Recommended update for google-cloud SDK</title>
    <updated>2026-10-03T14:09:12.900160+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Recommended update for google-cloud SDK</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-ru-2024:1637-2"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-30608</id>
    <title>UBUNTU-CVE-2023-30608</title>
    <updated>2026-10-03T14:09:12.900176+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:18.04:LTS: sqlparse, Ubuntu:20.04:LTS: sqlparse, Ubuntu:22.04:LTS: sqlparse</p>
<p>sqlparse is a non-validating SQL parser module for Python. In affected versions the SQL parser contains a regular expression that is vulnerable to ReDoS (Regular Expression Denial of Service). This issue was introduced by commit `e75e358`. The vulnerability may lead to Denial of Service (DoS). This issues has been fixed in sqlparse 0.4.4 by commit `c457abd5f`. Users are advised to upgrade. There are no known workarounds for this issue.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-30608"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2031</id>
    <title>WID-SEC-W-2023-2031 — Xerox FreeFlow Print Server: Mehrere Schwachstellen</title>
    <updated>2026-10-03T14:09:12.900206+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Xerox FreeFlow Print Server ausnutzen, um die Vertraulichkeit, Verfügbarkeit und Integrität des Systems zu gefährden.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2031"/>
  </entry>
</feed>
