Количество 53
Количество 53
ELSA-2026-4216
ELSA-2026-4216: python3.11 security update (MODERATE)
ELSA-2026-4168
ELSA-2026-4168: python3.9 security update (MODERATE)
ELSA-2026-4165
ELSA-2026-4165: python3.12 security update (MODERATE)
openSUSE-SU-2026:20254-1
Security update for python313
SUSE-SU-2026:0642-1
Security update for python313
CVE-2026-0865
User-controlled header names and values containing newlines can allow injecting HTTP headers.
CVE-2026-0865
User-controlled header names and values containing newlines can allow injecting HTTP headers.
CVE-2026-0865
User-controlled header names and values containing newlines can allow injecting HTTP headers.
CVE-2026-0865
User-controlled header names and values containing newlines can allow ...
SUSE-SU-2026:1062-1
Security update for python310
SUSE-SU-2026:1117-1
Security update for python311
SUSE-SU-2026:1107-1
Security update for python312
GHSA-5mc7-p6pj-r3f5
User-controlled header names and values containing newlines can allow injecting HTTP headers.
CVE-2025-15366
The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.
CVE-2025-15366
The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.
CVE-2025-15366
The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.
CVE-2025-15366
The imaplib module, when passed a user-controlled command, can have ad ...
GHSA-4c67-8q63-xrxq
The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters.
CVE-2026-1299
The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".
CVE-2026-1299
The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator".
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
ELSA-2026-4216 ELSA-2026-4216: python3.11 security update (MODERATE) | 28 дней назад | |||
ELSA-2026-4168 ELSA-2026-4168: python3.9 security update (MODERATE) | 29 дней назад | |||
ELSA-2026-4165 ELSA-2026-4165: python3.12 security update (MODERATE) | 29 дней назад | |||
openSUSE-SU-2026:20254-1 Security update for python313 | около 2 месяцев назад | |||
SUSE-SU-2026:0642-1 Security update for python313 | около 1 месяца назад | |||
CVE-2026-0865 User-controlled header names and values containing newlines can allow injecting HTTP headers. | 0% Низкий | 3 месяца назад | ||
CVE-2026-0865 User-controlled header names and values containing newlines can allow injecting HTTP headers. | CVSS3: 4.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-0865 User-controlled header names and values containing newlines can allow injecting HTTP headers. | 0% Низкий | 3 месяца назад | ||
CVE-2026-0865 User-controlled header names and values containing newlines can allow ... | 0% Низкий | 3 месяца назад | ||
SUSE-SU-2026:1062-1 Security update for python310 | 12 дней назад | |||
SUSE-SU-2026:1117-1 Security update for python311 | 11 дней назад | |||
SUSE-SU-2026:1107-1 Security update for python312 | 11 дней назад | |||
GHSA-5mc7-p6pj-r3f5 User-controlled header names and values containing newlines can allow injecting HTTP headers. | 0% Низкий | 3 месяца назад | ||
CVE-2025-15366 The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters. | 0% Низкий | 3 месяца назад | ||
CVE-2025-15366 The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters. | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
CVE-2025-15366 The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters. | 0% Низкий | 3 месяца назад | ||
CVE-2025-15366 The imaplib module, when passed a user-controlled command, can have ad ... | 0% Низкий | 3 месяца назад | ||
GHSA-4c67-8q63-xrxq The imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing control characters. | 0% Низкий | 3 месяца назад | ||
CVE-2026-1299 The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator". | 0% Низкий | 2 месяца назад | ||
CVE-2026-1299 The email module, specifically the "BytesGenerator" class, didn’t properly quote newlines for email headers when serializing an email message allowing for header injection when an email is serialized. This is only applicable if using "LiteralHeader" writing headers that don't respect email folding rules, the new behavior will reject the incorrectly folded headers in "BytesGenerator". | CVSS3: 7.1 | 0% Низкий | 2 месяца назад |
Уязвимостей на страницу