Seth Larson (https://github.com/sethmlarson)
10 kredili kayıt · son 12 ayda 10 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
24İzleyin | CVE-2026-17084İstismar yok | stringprep.map_table_b2() deviates from RFC 3454 Table B.2python software foundation · cpython · CWE-436 | Orta6,0 | — | %0,7 | 18 Ağu 2026 |
9İzleyin | CVE-2026-18503İstismar yok | Super-linear CPU usage for unbounded input to csv.Sniffer.sniff()python software foundation · cpython · CWE-1176 | Düşük2,4 | — | %0,1 | 10 Ağu 2026 |
34İzleyin | CVE-2026-15308İstismar yok | Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarationspython · python · CWE-400 | Yüksek8,7 | — | %0,6 | 9 Tem 2026 |
8İzleyin | CVE-2026-4360İstismar yok | Tarfile.extract() doesn't fully respect filter parameterpython · python · CWE-281 | Düşük2,0 | — | %0,5 | 30 Haz 2026 |
16İzleyin | CVE-2026-0864İstismar yok | Configuration Injection via Carriage Return (\r) in write() methodpython · python · CWE-74 | Orta4,1 | — | %0,2 | 23 Haz 2026 |
27İzleyin | CVE-2026-7774İstismar yok | tarfile.data_filter path traversal bypass allows writing outside the extraction directorypython software foundation · cpython · CWE-22 | Orta6,9 | — | %0,8 | 4 Haz 2026 |
25İzleyin | CVE-2026-3276İstismar yok | Potential DoS via quadratic complexity in unicodedata.normalize()python software foundation · cpython · CWE-407 | Orta6,3 | — | %0,7 | 3 Haz 2026 |
24İzleyin | CVE-2026-3087İstismar yok | shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPspython · python · CWE-22 | Orta6,0 | — | %0,7 | 27 Nis 2026 |
8İzleyin | CVE-2026-6019İstismar yok | BaseCookie.js_output() does not neutralize embedded characterspython · python · CWE-150 | Düşük2,1 | — | %0,6 | 22 Nis 2026 |
35İzleyin | CVE-2026-3298İstismar yok | Out-of-bounds write in Windows asyncio.ProacterEventLoop.sock_recvfrom_into() when using nbytespython software foundation · cpython · CWE-787 | Yüksek8,8 | — | %0,6 | 21 Nis 2026 |
- CVE-2026-1708424İzleyin
stringprep.map_table_b2() deviates from RFC 3454 Table B.2
OrtaCVSS 6,0İstismar yokEPSS %1python software foundation · cpython18 Ağu 2026
- CVE-2026-185039İzleyin
Super-linear CPU usage for unbounded input to csv.Sniffer.sniff()
DüşükCVSS 2,4İstismar yokEPSS %0python software foundation · cpython10 Ağu 2026
- CVE-2026-1530834İzleyin
Incremental HTMLParser feed() allows CPU-exhaustion DoS via repeated unterminated markup declarations
YüksekCVSS 8,7İstismar yokEPSS %1python · python9 Tem 2026
- CVE-2026-43608İzleyin
Tarfile.extract() doesn't fully respect filter parameter
DüşükCVSS 2,0İstismar yokEPSS %0python · python30 Haz 2026
- CVE-2026-086416İzleyin
Configuration Injection via Carriage Return (\r) in write() method
OrtaCVSS 4,1İstismar yokEPSS %0python · python23 Haz 2026
- CVE-2026-777427İzleyin
tarfile.data_filter path traversal bypass allows writing outside the extraction directory
OrtaCVSS 6,9İstismar yokEPSS %1python software foundation · cpython4 Haz 2026
- CVE-2026-327625İzleyin
Potential DoS via quadratic complexity in unicodedata.normalize()
OrtaCVSS 6,3İstismar yokEPSS %1python software foundation · cpython3 Haz 2026
- CVE-2026-308724İzleyin
shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
OrtaCVSS 6,0İstismar yokEPSS %1python · python27 Nis 2026
- CVE-2026-60198İzleyin
BaseCookie.js_output() does not neutralize embedded characters
DüşükCVSS 2,1İstismar yokEPSS %1python · python22 Nis 2026
- CVE-2026-329835İzleyin
Out-of-bounds write in Windows asyncio.ProacterEventLoop.sock_recvfrom_into() when using nbytes
YüksekCVSS 8,8İstismar yokEPSS %1python software foundation · cpython21 Nis 2026