Логотип exploitDog
bind:"CVE-2025-13836" OR bind:"CVE-2025-12084"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-13836" OR bind:"CVE-2025-12084"

Количество 40

Количество 40

nvd логотип

CVE-2025-13836

4 месяца назад

When reading an HTTP response from a server, if no read amount is specified, the default behavior will be to use Content-Length. This allows a malicious server to cause the client to read large amounts of data into memory, potentially causing OOM or other DoS.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-13836

4 месяца назад

Excessive read buffering DoS in http.client

EPSS: Низкий
debian логотип

CVE-2025-13836

4 месяца назад

When reading an HTTP response from a server, if no read amount is spec ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2025-12084

4 месяца назад

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2025-12084

4 месяца назад

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2025-12084

4 месяца назад

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2025-12084

4 месяца назад

Quadratic complexity in node ID cache clearing

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2025-12084

4 месяца назад

When building nested elements using xml.dom.minidom methods such as ap ...

CVSS3: 5.3
EPSS: Низкий
rocky логотип

RLSA-2026:2419

около 1 месяца назад

Moderate: python3.12 security update

EPSS: Низкий
github логотип

GHSA-399h-rrqc-rpgv

4 месяца назад

When reading an HTTP response from a server, if no read amount is specified, the default behavior will be to use Content-Length. This allows a malicious server to cause the client to read large amounts of data into memory, potentially causing OOM or other DoS.

CVSS3: 9.1
EPSS: Низкий
oracle-oval логотип

ELSA-2026-2419

около 1 месяца назад

ELSA-2026-2419: python3.12 security update (MODERATE)

EPSS: Низкий
rocky логотип

RLSA-2026:1478

около 2 месяцев назад

Moderate: python3.9 security update

EPSS: Низкий
github логотип

GHSA-hfqx-732w-xrrw

4 месяца назад

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 5.3
EPSS: Низкий
oracle-oval логотип

ELSA-2026-2713

17 дней назад

ELSA-2026-2713: python3 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-1631

около 2 месяцев назад

ELSA-2026-1631: python3 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-1537

около 2 месяцев назад

ELSA-2026-1537: python security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-1478

около 2 месяцев назад

ELSA-2026-1478: python3.9 security update (MODERATE)

EPSS: Низкий
fstec логотип

BDU:2026-01344

4 месяца назад

Уязвимость функций appendChild() и _clear_id_cache() интерпретатора языка программирования Python (CPython), позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
rocky логотип

RLSA-2026:0123

3 месяца назад

Moderate: python3.12 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-0123

3 месяца назад

ELSA-2026-0123: python3.12 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-13836

When reading an HTTP response from a server, if no read amount is specified, the default behavior will be to use Content-Length. This allows a malicious server to cause the client to read large amounts of data into memory, potentially causing OOM or other DoS.

CVSS3: 7.5
0%
Низкий
4 месяца назад
msrc логотип
CVE-2025-13836

Excessive read buffering DoS in http.client

0%
Низкий
4 месяца назад
debian логотип
CVE-2025-13836

When reading an HTTP response from a server, if no read amount is spec ...

CVSS3: 7.5
0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2025-12084

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 5.3
0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-12084

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 7.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-12084

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 5.3
0%
Низкий
4 месяца назад
msrc логотип
CVE-2025-12084

Quadratic complexity in node ID cache clearing

CVSS3: 5.3
0%
Низкий
4 месяца назад
debian логотип
CVE-2025-12084

When building nested elements using xml.dom.minidom methods such as ap ...

CVSS3: 5.3
0%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:2419

Moderate: python3.12 security update

0%
Низкий
около 1 месяца назад
github логотип
GHSA-399h-rrqc-rpgv

When reading an HTTP response from a server, if no read amount is specified, the default behavior will be to use Content-Length. This allows a malicious server to cause the client to read large amounts of data into memory, potentially causing OOM or other DoS.

CVSS3: 9.1
0%
Низкий
4 месяца назад
oracle-oval логотип
ELSA-2026-2419

ELSA-2026-2419: python3.12 security update (MODERATE)

около 1 месяца назад
rocky логотип
RLSA-2026:1478

Moderate: python3.9 security update

0%
Низкий
около 2 месяцев назад
github логотип
GHSA-hfqx-732w-xrrw

When building nested elements using xml.dom.minidom methods such as appendChild() that have a dependency on _clear_id_cache() the algorithm is quadratic. Availability can be impacted when building excessively nested documents.

CVSS3: 5.3
0%
Низкий
4 месяца назад
oracle-oval логотип
ELSA-2026-2713

ELSA-2026-2713: python3 security update (MODERATE)

17 дней назад
oracle-oval логотип
ELSA-2026-1631

ELSA-2026-1631: python3 security update (MODERATE)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-1537

ELSA-2026-1537: python security update (MODERATE)

около 2 месяцев назад
oracle-oval логотип
ELSA-2026-1478

ELSA-2026-1478: python3.9 security update (MODERATE)

около 2 месяцев назад
fstec логотип
BDU:2026-01344

Уязвимость функций appendChild() и _clear_id_cache() интерпретатора языка программирования Python (CPython), позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:0123

Moderate: python3.12 security update

3 месяца назад
oracle-oval логотип
ELSA-2026-0123

ELSA-2026-0123: python3.12 security update (MODERATE)

3 месяца назад

Уязвимостей на страницу