İçeriğe atla
Noroxi

Stan Ulbrych (https://github.com/StanFromIreland)

11 kredili kayıt · son 12 ayda 11 · 0 tanesi CISA KEV’de

Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.

Kredili kayıtlar

Araştırmacılar
  • CVE-2026-12345
    23İzleyin

    Race condition in tempfile.TemporaryDirectory cleanup allows deleting files outside the temporary directory

    OrtaCVSS 5,9İstismar yok

    python software foundation · cpythonBugün

  • CVE-2026-82049
    33İzleyin

    tarfile extraction filters allow file modification and content disclosure via hard link to symlink

    YüksekCVSS 8,4İstismar yokEPSS %0

    python software foundation · cpython14 Eyl 2026

  • CVE-2026-87910
    22İzleyin

    tarfile hardlink fallback ignores custom extraction filter rejection via None

    OrtaCVSS 5,7İstismar yokEPSS %1

    python software foundation · cpython11 Eyl 2026

  • CVE-2026-19672
    25İzleyin

    tarfile extraction filter bypass allows creation of directories outside the destination

    OrtaCVSS 6,3İstismar yokEPSS %1

    python software foundation · cpython19 Ağu 2026

  • CVE-2026-17084
    24İzleyin

    stringprep.map_table_b2() deviates from RFC 3454 Table B.2

    OrtaCVSS 6,0İstismar yokEPSS %1

    python software foundation · cpython18 Ağu 2026

  • CVE-2026-11972
    32İzleyin

    tarfile opened in streaming mode mishandles EOF

    YüksekCVSS 8,2İstismar yokEPSS %1

    python software foundation · cpython23 Haz 2026

  • CVE-2026-11940
    31İzleyin

    tarfile extraction filter bypass allows escaping the destination directory

    YüksekCVSS 7,8İstismar yokEPSS %1

    python software foundation · cpython23 Haz 2026

  • CVE-2026-9669
    32İzleyin

    bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow

    YüksekCVSS 8,2İstismar yokEPSS %1

    python software foundation · cpython8 Haz 2026

  • CVE-2026-7774
    27İzleyin

    tarfile.data_filter path traversal bypass allows writing outside the extraction directory

    OrtaCVSS 6,9İstismar yokEPSS %1

    python software foundation · cpython4 Haz 2026

  • CVE-2026-3276
    25İzleyin

    Potential DoS via quadratic complexity in unicodedata.normalize()

    OrtaCVSS 6,3İstismar yokEPSS %1

    python software foundation · cpython3 Haz 2026

  • CVE-2026-7210
    25İzleyin

    The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection

    OrtaCVSS 6,3İstismar yokEPSS %1

    python · python11 May 2026