mediumVulnerability

GHSA-27jp-wm6q-gp25

### Summary The below gist hangs while attempting to format a long list of tuples. This was found while [drafting a regression test for Dja ngo 5.2's composite primary key feature](https://code.djangoproject.com/ticket/36416#comment:3), which allows querying composite fields with tuples. ###

Properties

ghsa_id
GHSA-27jp-wm6q-gp25
severity
medium
summary
sqlparse: formatting list of tuples leads to denial of service
cve_id
GHSA-27jp-wm6q-gp25
is_ghsa_only
true
ghsa_published
2026-02-13T16:16:11Z
source_url
https://github.com/advisories/GHSA-27jp-wm6q-gp25
ghsa_updated
2026-02-13T16:16:13Z

Related Entities (3)

AFFECTS (1)

[Software]pip/sqlparse

HAS_WEAKNESS (1)

[Weakness]Allocation of Resources Without Limits or Throttling

REPORTED_BY (1)

[Source]GitHub Advisory Database

Explore deeper with Ninja Signal's threat intelligence graph