Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 7

Количество 7

github логотип

GHSA-3936-cmfr-pm3m

5 месяцев назад

Black: Arbitrary file writes from unsanitized user input in cache file name

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-32274

5 месяцев назад

Black is the uncompromising Python code formatter. Starting in version 24.3.0 and prior to version 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename without sanitization, which allowed an attacker who controls the value of this argument to write cache files to arbitrary file system locations. Fixed in Black 26.3.1.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-32274

5 месяцев назад

Black is the uncompromising Python code formatter. Starting in version 24.3.0 and prior to version 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename without sanitization, which allowed an attacker who controls the value of this argument to write cache files to arbitrary file system locations. Fixed in Black 26.3.1.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-32274

5 месяцев назад

Black is the uncompromising Python code formatter. Starting in version 24.3.0 and prior to version 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename without sanitization, which allowed an attacker who controls the value of this argument to write cache files to arbitrary file system locations. Fixed in Black 26.3.1.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-32274

5 месяцев назад

Black is the uncompromising Python code formatter. Starting in version ...

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:0900-1

5 месяцев назад

Security update for python-black

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20417-1

5 месяцев назад

Security update for python-black

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3936-cmfr-pm3m

Black: Arbitrary file writes from unsanitized user input in cache file name

CVSS3: 7.5
1%
Низкий
5 месяцев назад
ubuntu логотип
CVE-2026-32274

Black is the uncompromising Python code formatter. Starting in version 24.3.0 and prior to version 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename without sanitization, which allowed an attacker who controls the value of this argument to write cache files to arbitrary file system locations. Fixed in Black 26.3.1.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
redhat логотип
CVE-2026-32274

Black is the uncompromising Python code formatter. Starting in version 24.3.0 and prior to version 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename without sanitization, which allowed an attacker who controls the value of this argument to write cache files to arbitrary file system locations. Fixed in Black 26.3.1.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
nvd логотип
CVE-2026-32274

Black is the uncompromising Python code formatter. Starting in version 24.3.0 and prior to version 26.3.1, Black writes a cache file, the name of which is computed from various formatting options. The value of the --python-cell-magics option was placed in the filename without sanitization, which allowed an attacker who controls the value of this argument to write cache files to arbitrary file system locations. Fixed in Black 26.3.1.

CVSS3: 7.5
1%
Низкий
5 месяцев назад
debian логотип
CVE-2026-32274

Black is the uncompromising Python code formatter. Starting in version ...

CVSS3: 7.5
1%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:0900-1

Security update for python-black

1%
Низкий
5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20417-1

Security update for python-black

5 месяцев назад

Уязвимостей на страницу