Vulnerability search
Batch lookup →274 matches
- CVE-2025-13837When loading a plist file, the plistlib module reads data in size specified by the file itself,…mediumEPSS 0.2%48.85.512.9%2025-12-01 18:13 UTC
- CVE-2026-42310Pillow is a Python imaging library.mediumEPSS 0.1%48.75.52.6%2026-05-09 04:10 UTC
- CVE-2019-11236Improper Neutralization of CRLF Sequences in urllib3 library for Python2 sources· osv_advisorymediumEPSS 2.1%48.76.180.1%2022-05-13 01:09 UTC
- CVE-2026-42308Pillow is a Python imaging library.2 sources· cvemediumEPSS 0.1%48.15.51.6%2026-05-09 06:16 UTC
- CVE-2023-6507Groups not dropped before running subprocess when using empty 'extra_groups' parameter2 sources· osv_advisorymediumEPSS 1.3%45.36.169.0%2023-12-08 18:20 UTC
- CVE-2026-6019BaseCookie.js_output() does not neutralize embedded characters4 sources· msrc_update_guide · cve · osv_advisory …mediumEPSS 0.2%44.06.113.5%2026-04-29 01:10 UTC
- CVE-2025-6075If the value passed to os.path.expandvars() is user-controlled a performance degradation is…3 sources· cve · osv_advisorymediumEPSS 0.1%43.35.53.6%2025-10-31 17:15 UTC
- CVE-2025-13462tarfile: Skip DIRTYPE normalization during GNU LONGNAME/LONGLINK handling2 sources· msrc_update_guide · cvelowEPSS 0.2%37.43.35.9%2026-03-25 01:05 UTC
- CVE-2006-1542Stack-based buffer overflow in Python 2.4.2 and earlier, running on Linux 2.6.12.5 under gcc 4.0.3…2 sources· cvenoneEPSS 0.9%34.70.057.8%2006-03-30 11:02 UTC
- CVE-2002-1119os._execvpe from os.py in Python 2.2.1 and earlier creates temporary files with predictable names,…2 sources· cvenoneEPSS 0.5%24.30.040.5%2004-09-01 04:00 UTC
- CVE-2011-4944Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after…3 sources· cve · osv_advisorynoneEPSS 0.4%21.60.036.0%2012-08-27 23:55 UTC