gpp_maybe Security update for python-sqlparse
SUSE-SLE-Module-Packagehub-Subpackages-15-SP7-2026-3762


This update for python-sqlparse fixes the following issues: - CVE-2026-54284: TokenList.__init__ materializes O(subtree) value per group, causing CPU DoS before depth/token caps trigger (bsc#1275459). - CVE-2026-59893: Inefficient Regex Handling of Dollar-Quoted SQL Literals Leads to ReDoS (bsc#1275461). - CVE-2026-59894: Generated Python and PHP snippets allow SQL string breakout through unescaped backslashes (bsc#1275460). - CVE-2026-71491: quadratic O(n2) DoS in group_comments (bsc#1275466).


cloud_download Downloads

SUSE Package Hub 15.7 aarch64
SUSE Package Hub 15.7 ppc64le
SUSE Package Hub 15.7 s390x
SUSE Package Hub 15.7 x86_64