Vulnerability search
Batch lookup →118 matches
- CVE-2026-21441urllib3 is an HTTP client library for Python.2 sources· cvehighEPSS 3%111.07.586.4%2026-01-07 22:15 UTC
- CVE-2019-9636Python 2.7.x through 2.7.16 and 3.x through 3.7.2 is affected by: Improper Handling of Unicode…2 sources· cvecriticalEPSS 8.8%105.99.894.9%2019-03-08 21:29 UTC
- CVE-2019-9948urllib in Python 2.x through 2.7.16 supports the local_file: scheme, which makes it easier for…2 sources· cvecriticalEPSS 12%103.09.195.8%2019-03-23 18:29 UTC
- CVE-2018-25032zlib before 1.2.12 allows memory corruption when deflating (i.e., when compressing) if the input…2 sources· cvehighEPSS 52%97.97.598.9%2022-03-25 09:15 UTC
- CVE-2016-2183The DES and Triple DES ciphers, as used in the TLS, SSH, and IPSec protocols and other protocols…2 sources· cvehighEPSS 96%97.47.599.9%2016-09-01 00:59 UTC
- CVE-2014-0224OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h does not properly restrict…2 sources· cvehighEPSS 95%96.97.499.9%2014-06-05 21:55 UTC
- CVE-2026-54058Pillow is a Python imaging library.2 sources· cvecriticalEPSS 0.5%96.69.142.4%2026-07-14 17:17 UTC
- CVE-2025-13836When reading an HTTP response from a server, if no read amount is specified, the default behavior…2 sources· cvehighEPSS 1.6%96.07.574.8%2025-12-01 18:16 UTC
- CVE-2015-20107In Python (aka CPython) up to 3.10.8, the mailcap module does not add escape characters into…2 sources· cvehighEPSS 7.1%95.27.693.8%2022-04-13 16:15 UTC
- CVE-2026-44432urllib3 is an HTTP client library for Python.2 sources· cvehighEPSS 0.7%94.57.550.3%2026-05-13 16:16 UTC
- CVE-2019-6690python-gnupg 0.4.3 allows context-dependent attackers to trick gnupg to decrypt other ciphertext…2 sources· cvehighEPSS 8.6%94.37.594.7%2019-03-21 16:01 UTC
- CVE-2019-15903In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to…2 sources· cvehighEPSS 6.6%93.67.593.4%2019-09-04 06:15 UTC
- CVE-2019-9674Lib/zipfile.py in Python through 3.7.2 allows remote attackers to cause a denial of service…2 sources· cvehighEPSS 5.5%92.97.592.3%2020-02-04 15:15 UTC
- CVE-2026-40192Pillow is a Python imaging library.2 sources· cvehighEPSS 0.7%91.87.549.9%2026-04-15 23:16 UTC
- CVE-2019-11324The urllib3 library before 1.24.2 for Python mishandles certain cases where the desired set of CA…2 sources· cvehighEPSS 2.8%89.07.585.8%2019-04-18 21:29 UTC
- CVE-2019-9740An issue was discovered in urllib2 in Python 2.x through 2.7.16 and urllib in Python 3.x through…2 sources· cvemediumEPSS 5.3%85.86.192.1%2019-03-13 03:29 UTC
- CVE-2019-9947An issue was discovered in urllib2 in Python 2.x through 2.7.16 and urllib in Python 3.x through…2 sources· cvemediumEPSS 5.3%85.76.192.1%2019-03-23 18:29 UTC
- CVE-2019-6802CRLF Injection in pypiserver 1.2.5 and below allows attackers to set arbitrary HTTP headers and…2 sources· cvemediumEPSS 3.8%84.26.189.3%2019-01-25 04:29 UTC
- CVE-2019-11236In the urllib3 library through 1.24.1 for Python, CRLF injection is possible if the attacker…2 sources· cvemediumEPSS 2.1%78.76.180.3%2019-04-15 15:29 UTC
- CVE-2026-3644The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete.2 sources· cvehighEPSS 0.5%78.37.539.4%2026-03-16 18:16 UTC
- CVE-2026-25990Pillow is a Python imaging library.2 sources· cvehighEPSS 0.4%77.27.530.7%2026-02-11 21:16 UTC
- CVE-2023-6507An issue was found in CPython 3.12.0 `subprocess` module on POSIX platforms.2 sources· cvemediumEPSS 1.3%76.06.169.0%2023-12-08 19:15 UTC
- CVE-2025-13462The "tarfile" module would still apply normalization of AREGTYPE (\x00) blocks to DIRTYPE, even…2 sources· cvelowEPSS 0.2%72.73.35.9%2026-03-12 18:16 UTC
- CVE-2026-42311Pillow is a Python imaging library.2 sources· cvehighEPSS 0.1%72.67.84.5%2026-05-09 06:16 UTC
- CVE-2026-4519The webbrowser.open() API would accept leading dashes in the URL which could be handled as command…2 sources· cvehighEPSS 0.3%69.17.123.1%2026-03-20 15:16 UTC