Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
PYSEC-2026-4161
  • PyPI/restrictedpython
RestrictedPython vulnerable to sandbox escape via string.Formatter field resolution 4 days ago
  • Fix available
  • Severity - 8.4 (High)
ECHO-d1ef-a46c-f47d
  • Echo:PyPI/restrictedpython
See record for full details 19 Sep
  • Fix available
GHSA-hp3v-5vw7-fx9w
  • PyPI/restrictedpython
RestrictedPython vulnerable to sandbox escape via string.Formatter field resolution 17 Sep
  • Fix available
  • Severity - 8.4 (High)
DEBIAN-CVE-2026-76825
  • Debian:12/restrictedpython
  • Debian:13/restrictedpython
  • Debian:14/restrictedpython
See record for full details 16 Sep
  • Fix available
  • Severity - 8.4 (High)
UBUNTU-CVE-2026-76825
  • Ubuntu:16.04:LTS/restrictedpython
  • Ubuntu:18.04:LTS/restrictedpython
  • Ubuntu:26.04:LTS/restrictedpython
  • Ubuntu:Pro:20.04:LTS/restrictedpython
  • Ubuntu:Pro:22.04:LTS/restrictedpython
  • ... 1 more
See record for full details 16 Sep
  • No fix available
  • Severity - 8.4 (High)
CVE-2026-76825
  • github.com/zopefoundation/restrictedpython
RestrictedPython: Sandbox escape via string.Formatter field resolution 16 Sep
  • Fix available
  • Severity - 8.4 (High)
PYSEC-2026-3917
  • PyPI/restrictedpython
RestrictedPython guard hooks can be shadowed via positional-only arguments 10 Sep
  • Fix available
  • Severity - 8.3 (High)
ECHO-e362-8d35-27d4
  • Echo:PyPI/restrictedpython
See record for full details 03 Sep
  • Fix available
GHSA-ffg3-p8fm-mjx2
  • PyPI/restrictedpython
RestrictedPython guard hooks can be shadowed via positional-only arguments 28 Aug
  • Fix available
  • Severity - 8.3 (High)
DEBIAN-CVE-2026-55830
  • Debian:12/restrictedpython
  • Debian:13/restrictedpython
  • Debian:14/restrictedpython
See record for full details 08 Jul
  • Fix available
  • Severity - 8.3 (High)
UBUNTU-CVE-2026-55830
  • Ubuntu:16.04:LTS/restrictedpython
  • Ubuntu:18.04:LTS/restrictedpython
  • Ubuntu:26.04:LTS/restrictedpython
  • Ubuntu:Pro:20.04:LTS/restrictedpython
  • Ubuntu:Pro:22.04:LTS/restrictedpython
  • ... 1 more
See record for full details 08 Jul
  • No fix available
  • Severity - 8.3 (High)
CVE-2026-55830
  • github.com/zopefoundation/restrictedpython
RestrictedPython guard hooks can be shadowed via positional-only arguments 08 Jul
  • Fix available
  • Severity - 8.3 (High)
PYSEC-2026-1874
  • PyPI/restrictedpython
try/except* clauses could allow bypass RestrictedPython via type confusion bug in the CPython interpreter 07 Jul
  • Fix available
  • Severity - 7.9 (High)
USN-7355-1
  • Ubuntu:Pro:20.04:LTS/restrictedpython
  • Ubuntu:Pro:22.04:LTS/restrictedpython
  • Ubuntu:Pro:24.04:LTS/restrictedpython
restrictedpython vulnerabilities 18 Mar 2025
  • Fix available
DEBIAN-CVE-2025-22153
  • Debian:13/restrictedpython
  • Debian:14/restrictedpython
See record for full details 23 Jan 2025
  • Fix available
  • Severity - 7.9 (High)
UBUNTU-CVE-2025-22153
  • Ubuntu:Pro:24.04:LTS/restrictedpython
See record for full details 23 Jan 2025
  • Fix available
  • Severity - 7.9 (High)