Skip to content

Upgrade Pygments to 2.20.0 (CVE-2026-4539)#1789

Merged
MaxHalford merged 1 commit intomainfrom
fix/upgrade-pygments-2.20.0
Apr 2, 2026
Merged

Upgrade Pygments to 2.20.0 (CVE-2026-4539)#1789
MaxHalford merged 1 commit intomainfrom
fix/upgrade-pygments-2.20.0

Conversation

@MaxHalford
Copy link
Copy Markdown
Member

@MaxHalford MaxHalford commented Apr 2, 2026

Summary

Resolves Dependabot alert #84 — Pygments < 2.20.0 has inefficient regex
complexity in AdlLexer (GHSA-5239-wwwm-4pmq).

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
@MaxHalford MaxHalford requested a review from smastelini as a code owner April 2, 2026 13:51
@MaxHalford MaxHalford merged commit abeb18f into main Apr 2, 2026
1 check passed
@MaxHalford MaxHalford deleted the fix/upgrade-pygments-2.20.0 branch April 2, 2026 13:54
@e10e3 e10e3 mentioned this pull request Apr 3, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant