Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Python MEDIUM 5.5
CVE-2026-0864

When using the "configparser" module to write configuration files containing multi-line text values with carriage return characters (\r) the resultin…

Fix unknown
Fix from $1,600 2026-06-23
Pymanager HIGH 7.8
CVE-2026-5271

pymanager included the current working directory in sys.path meaning modules could be shadowed by modules in the current working directory. As a resu…

No fix yet
Fix from $1,950 2026-04-01
Pillow CRITICAL 9.8
CVE-2022-30595

libImaging/TgaRleDecode.c in Pillow 9.1.0 has a heap buffer overflow in the processing of invalid TGA image files.

No fix yet
Fix from $2,300 2022-05-25
Pyxml HIGH 7.5
CVE-2012-0877

PyXML: Hash table collisions CPU usage Denial of Service

Mitigation only
Fix from $1,950 2019-11-22
Python HIGH 7.5
CVE-2019-17514

library/glob.html in the Python 2 and 3 documentation before 2016 has potentially misleading information about whether sorting occurs, as demonstrate…

No fix yet
Fix from $1,950 2019-10-12
Python Gnupg HIGH 7.5
CVE-2019-6690EPSS 9%

python-gnupg 0.4.3 allows context-dependent attackers to trick gnupg to decrypt other ciphertext than intended. To perform the attack, the passphrase…

No fix yet
Fix from $1,950 2019-03-21
Tablib CRITICAL 9.8
CVE-2017-2810

An exploitable vulnerability exists in the Databook loading functionality of Tablib 0.11.4. A yaml loaded Databook can execute arbitrary python comma…

No fix yet
Fix from $2,300 2017-06-14
Pillow MEDIUM 5.5
CVE-2016-3076

Heap-based buffer overflow in the j2k_encode_entry function in Pillow 2.5.0 through 3.1.1 allows remote attackers to cause a denial of service (memor…

Mitigation only
Fix from $1,600 2017-04-24
Python Priority Library HIGH 7.5
CVE-2016-6580

A HTTP/2 implementation built using any version of the Python priority library prior to version 1.2.0 could be targeted by a malicious peer by having…

Mitigation only
Fix from $1,950 2017-01-10
Hpack HIGH 7.5
CVE-2016-6581

A HTTP/2 implementation built using any version of the Python HPACK library between v1.0.0 and v2.2.0 could be targeted for a denial of service attac…

Mitigation only
Fix from $1,950 2017-01-10
Tgcaptcha2 HIGH 7.5
CVE-2016-1000032

TGCaptcha2 version 0.3.0 is vulnerable to a replay attack due to a missing nonce allowing attackers to use a single solved CAPTCHA multiple times.

Mitigation only
Fix from $1,950 2016-10-25