Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-python-2026-11972
  • Bitnami/python
tarfile opened in streaming mode mishandles EOF 30 Jul
  • No fix available
  • Severity - 8.2 (High)
BIT-python-min-2026-11972
  • Bitnami/python-min
tarfile opened in streaming mode mishandles EOF 30 Jul
  • No fix available
  • Severity - 8.2 (High)
BIT-python-2026-11940
  • Bitnami/python
tarfile extraction filter bypass allows escaping the destination directory 30 Jul
  • No fix available
  • Severity - 7.8 (High)
BIT-python-min-2026-11940
  • Bitnami/python-min
tarfile extraction filter bypass allows escaping the destination directory 30 Jul
  • No fix available
  • Severity - 7.8 (High)
BIT-python-2026-0864
  • Bitnami/python
Configuration Injection via Carriage Return (\r) in write() method 30 Jul
  • No fix available
  • Severity - 4.1 (Medium)
BIT-python-min-2026-0864
  • Bitnami/python-min
Configuration Injection via Carriage Return (\r) in write() method 30 Jul
  • No fix available
  • Severity - 4.1 (Medium)
BIT-libpython-2026-11972
  • Bitnami/libpython
tarfile opened in streaming mode mishandles EOF 30 Jul
  • No fix available
  • Severity - 8.2 (High)
BIT-libpython-2026-11940
  • Bitnami/libpython
tarfile extraction filter bypass allows escaping the destination directory 30 Jul
  • No fix available
  • Severity - 7.8 (High)
BIT-libpython-2026-0864
  • Bitnami/libpython
Configuration Injection via Carriage Return (\r) in write() method 30 Jul
  • No fix available
  • Severity - 4.1 (Medium)
CVE-2026-6879
  • github.com/python/cpython
Quadratic Behavior in xml.etree.ElementPath Index Predicates 28 Jul
  • Fix available
  • Severity - 2.0 (Low)
PSF-2026-34
  • github.com/python/cpython
See record for full details 28 Jul
  • Fix available
BIT-python-2026-15308
  • Bitnami/python
Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations 12 Jul
  • Fix available
  • Severity - 8.7 (High)
BIT-python-min-2026-15308
  • Bitnami/python-min
Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations 12 Jul
  • Fix available
  • Severity - 8.7 (High)
BIT-libpython-2026-15308
  • Bitnami/libpython
Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations 12 Jul
  • Fix available
  • Severity - 8.7 (High)
CVE-2026-15308
  • github.com/python/cpython
Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations 09 Jul
  • Fix available
  • Severity - 8.7 (High)
PSF-2026-33
  • github.com/python/cpython
See record for full details 09 Jul
  • Fix available