Python — высокоуровневый язык программирования общего назначения. Его философия дизайна делает акцент на читаемости кода.
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 3.13.15 | 3.13.15 | ||
| 3.13.14 | 3.13.14 | ||
| 3.13.13 | 3.13.13 | ||
| 3.13.12 | 3.13.12 | ||
| 3.13.11 | 3.13.11 | ||
| 3.13.10 | 3.13.10 | ||
| 3.13.9 | 3.13.9 | ||
| 3.13.8 | 3.13.8 | ||
| 3.13.7 | 3.13.7 | ||
| 3.13.6 | 3.13.6 |
Показывать по
Количество 1 113
RLSA-2023:5994
Important: python27:2.7 security update
BDU:2026-11380
Уязвимость интерпретатора языка программирования Python, связанная с недостатками ограничения имени пути к каталогу, позволяющая нарушителю оказать воздействие на целостность данных
CVE-2026-3644
The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation. Additionally, BaseCookie.js_output() lacked the output validation applied to BaseCookie.output().
CVE-2026-4224
When an Expat parser with a registered ElementDeclHandler parses an inline document type definition containing a deeply nested content model a C stack overflow occurs.
CVE-2026-3644
The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation. Additionally, BaseCookie.js_output() lacked the output validation applied to BaseCookie.output().
CVE-2026-4224
When an Expat parser with a registered ElementDeclHandler parses an inline document type definition containing a deeply nested content model a C stack overflow occurs.
CVE-2026-4224
When an Expat parser with a registered ElementDeclHandler parses an in ...
CVE-2026-3644
The fix for CVE-2026-0672, which rejected control characters in http.c ...
CVE-2026-4224
When an Expat parser with a registered ElementDeclHandler parses an inline document type definition containing a deeply nested content model a C stack overflow occurs.
CVE-2026-3644
The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation. Additionally, BaseCookie.js_output() lacked the output validation applied to BaseCookie.output().
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
RLSA-2023:5994 Important: python27:2.7 security update | 1% Низкий | 6 месяцев назад | ||
BDU:2026-11380 Уязвимость интерпретатора языка программирования Python, связанная с недостатками ограничения имени пути к каталогу, позволяющая нарушителю оказать воздействие на целостность данных | CVSS3: 3.3 | 0% Низкий | 6 месяцев назад | |
CVE-2026-3644 The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation. Additionally, BaseCookie.js_output() lacked the output validation applied to BaseCookie.output(). | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-4224 When an Expat parser with a registered ElementDeclHandler parses an inline document type definition containing a deeply nested content model a C stack overflow occurs. | CVSS3: 7.5 | 1% Низкий | 6 месяцев назад | |
CVE-2026-3644 The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation. Additionally, BaseCookie.js_output() lacked the output validation applied to BaseCookie.output(). | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-4224 When an Expat parser with a registered ElementDeclHandler parses an inline document type definition containing a deeply nested content model a C stack overflow occurs. | CVSS3: 7.5 | 1% Низкий | 6 месяцев назад | |
CVE-2026-4224 When an Expat parser with a registered ElementDeclHandler parses an in ... | CVSS3: 7.5 | 1% Низкий | 6 месяцев назад | |
CVE-2026-3644 The fix for CVE-2026-0672, which rejected control characters in http.c ... | CVSS3: 7.5 | 0% Низкий | 6 месяцев назад | |
CVE-2026-4224 When an Expat parser with a registered ElementDeclHandler parses an inline document type definition containing a deeply nested content model a C stack overflow occurs. | CVSS3: 5.9 | 1% Низкий | 6 месяцев назад | |
CVE-2026-3644 The fix for CVE-2026-0672, which rejected control characters in http.cookies.Morsel, was incomplete. The Morsel.update(), |= operator, and unpickling paths were not patched, allowing control characters to bypass input validation. Additionally, BaseCookie.js_output() lacked the output validation applied to BaseCookie.output(). | CVSS3: 5.4 | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу