Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Python

Pythonвысокоуровневый язык программирования общего назначения. Его философия дизайна делает акцент на читаемости кода.

Релизный цикл, информация об уязвимостях

Продукт: Python
Вендор: python

График релизов

3.103.113.123.133.1420212022202320242025202620272028202920302031

Недавние уязвимости Python

Количество 990

ubuntu логотип

CVE-2026-15308

21 день назад

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-7qj2-q5c8-cxx5

21 день назад

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-15308

21 день назад

The incremental HTML parser (html.parser.HTMLParser) allows for CPU de ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-15308

21 день назад

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-15308

21 день назад

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-gf2w-jqmq-fcm8

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2026-4360

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed ...

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2026-4360

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2026-4360

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
rocky логотип

RLSA-2023:2860

около 1 месяца назад

Moderate: python27:2.7 security update

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2026-15308

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
1%
Низкий
21 день назад
github логотип
GHSA-7qj2-q5c8-cxx5

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
1%
Низкий
21 день назад
debian логотип
CVE-2026-15308

The incremental HTML parser (html.parser.HTMLParser) allows for CPU de ...

CVSS3: 7.5
1%
Низкий
21 день назад
nvd логотип
CVE-2026-15308

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
1%
Низкий
21 день назад
redhat логотип
CVE-2026-15308

The incremental HTML parser (html.parser.HTMLParser) allows for CPU denial-of-service through repeated unterminated markup declarations when processing uncontrolled data.

CVSS3: 7.5
1%
Низкий
21 день назад
github логотип
GHSA-gf2w-jqmq-fcm8

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed ...

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
ubuntu логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
rocky логотип
RLSA-2023:2860

Moderate: python27:2.7 security update

2%
Низкий
около 1 месяца назад

Уязвимостей на страницу


Поделиться