Python — высокоуровневый язык программирования общего назначения. Его философия дизайна делает акцент на читаемости кода.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 3.13.15 | 3.13.15 | ||
| 3.13.14 | 3.13.14 | ||
| 3.13.13 | 3.13.13 | ||
| 3.13.12 | 3.13.12 | ||
| 3.13.11 | 3.13.11 | ||
| 3.13.10 | 3.13.10 | ||
| 3.13.9 | 3.13.9 | ||
| 3.13.8 | 3.13.8 | ||
| 3.13.7 | 3.13.7 | ||
| 3.13.6 | 3.13.6 |
Показывать по
Количество 1 113
CVE-2026-0864
When using the "configparser" module to write configuration files containing multi-line text values with carriage return characters (\r) the resulting file could be injected with unexpected keys and values if the attacker controls the written value.
GHSA-g345-7jg6-m22p
When using the "configparser" module to write configuration files containing multi-line text values with carriage return characters (\r) the resulting file could be injected with unexpected keys and values if the attacker controls the written value.
RLSA-2026:6473
Important: python3 security update
RLSA-2026:1631
Moderate: python3 security update
CVE-2026-7210
`xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch.
CVE-2026-7210
`xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch.
CVE-2026-7210
`xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch.
CVE-2026-7210
`xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entro ...
GHSA-wxv8-w48j-r2f4
`xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch.
ELSA-2026-9614
ELSA-2026-9614: python security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2026-0864 When using the "configparser" module to write configuration files containing multi-line text values with carriage return characters (\r) the resulting file could be injected with unexpected keys and values if the attacker controls the written value. | CVSS3: 5.5 | 0% Низкий | 3 месяца назад | |
GHSA-g345-7jg6-m22p When using the "configparser" module to write configuration files containing multi-line text values with carriage return characters (\r) the resulting file could be injected with unexpected keys and values if the attacker controls the written value. | CVSS3: 5.5 | 0% Низкий | 3 месяца назад | |
RLSA-2026:6473 Important: python3 security update | 0% Низкий | 4 месяца назад | ||
RLSA-2026:1631 Moderate: python3 security update | 1% Низкий | 4 месяца назад | ||
CVE-2026-7210 `xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch. | CVSS3: 7.5 | 1% Низкий | 5 месяцев назад | |
CVE-2026-7210 `xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch. | CVSS3: 7.5 | 1% Низкий | 5 месяцев назад | |
CVE-2026-7210 `xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch. | CVSS3: 5.3 | 1% Низкий | 5 месяцев назад | |
CVE-2026-7210 `xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entro ... | CVSS3: 7.5 | 1% Низкий | 5 месяцев назад | |
GHSA-wxv8-w48j-r2f4 `xml.parsers.expat` and `xml.etree.ElementTree` use insufficient entropy for Expat hash-flooding protection, which allows a crafted XML document to trigger hash flooding.\r\n\r\nFully mitigating this vulnerability requires both updating libexpat to 2.8.0 or later and applying this patch. | CVSS3: 9.8 | 1% Низкий | 5 месяцев назад | |
ELSA-2026-9614 ELSA-2026-9614: python security update (IMPORTANT) | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу