Stan Ulbrych (https://github.com/StanFromIreland)
11 kredili kayıt · son 12 ayda 11 · 0 tanesi CISA KEV’de
Adlar CNA kayıtlarındaki serbest metindir; aynı kişi farklı yazımlarla ayrı görünebilir. Düzeltme için bize yazın.
Kredili kayıtlar
Araştırmacılar| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
23İzleyin | CVE-2026-12345İstismar yok | Race condition in tempfile.TemporaryDirectory cleanup allows deleting files outside the temporary directorypython software foundation · cpython · CWE-59 | Orta5,9 | — | — | Bugün |
33İzleyin | CVE-2026-82049İstismar yok | tarfile extraction filters allow file modification and content disclosure via hard link to symlinkpython software foundation · cpython · CWE-59 | Yüksek8,4 | — | %0,2 | 14 Eyl 2026 |
22İzleyin | CVE-2026-87910İstismar yok | tarfile hardlink fallback ignores custom extraction filter rejection via Nonepython software foundation · cpython · CWE-22 | Orta5,7 | — | %0,5 | 11 Eyl 2026 |
25İzleyin | CVE-2026-19672İstismar yok | tarfile extraction filter bypass allows creation of directories outside the destinationpython software foundation · cpython · CWE-22 | Orta6,3 | — | %0,5 | 19 Ağu 2026 |
24İzleyin | CVE-2026-17084İstismar yok | stringprep.map_table_b2() deviates from RFC 3454 Table B.2python software foundation · cpython · CWE-436 | Orta6,0 | — | %0,7 | 18 Ağu 2026 |
32İzleyin | CVE-2026-11972İstismar yok | tarfile opened in streaming mode mishandles EOFpython software foundation · cpython · CWE-252 | Yüksek8,2 | — | %0,7 | 23 Haz 2026 |
31İzleyin | CVE-2026-11940İstismar yok | tarfile extraction filter bypass allows escaping the destination directorypython software foundation · cpython · CWE-22 | Yüksek7,8 | — | %0,8 | 23 Haz 2026 |
32İzleyin | CVE-2026-9669İstismar yok | bz2.BZ2Decompressor reuse after error can cause a stack buffer overflowpython software foundation · cpython · CWE-121 | Yüksek8,2 | — | %0,6 | 8 Haz 2026 |
27İzleyin | CVE-2026-7774İstismar yok | tarfile.data_filter path traversal bypass allows writing outside the extraction directorypython software foundation · cpython · CWE-22 | Orta6,9 | — | %0,8 | 4 Haz 2026 |
25İzleyin | CVE-2026-3276İstismar yok | Potential DoS via quadratic complexity in unicodedata.normalize()python software foundation · cpython · CWE-407 | Orta6,3 | — | %0,7 | 3 Haz 2026 |
25İzleyin | CVE-2026-7210İstismar yok | The expat and elementtree parsers use insufficient entropy for XML hash-flooding protectionpython · python · CWE-331 | Orta6,3 | — | %1,4 | 11 May 2026 |
- CVE-2026-1234523İzleyin
Race condition in tempfile.TemporaryDirectory cleanup allows deleting files outside the temporary directory
OrtaCVSS 5,9İstismar yokpython software foundation · cpythonBugün
- CVE-2026-8204933İzleyin
tarfile extraction filters allow file modification and content disclosure via hard link to symlink
YüksekCVSS 8,4İstismar yokEPSS %0python software foundation · cpython14 Eyl 2026
- CVE-2026-8791022İzleyin
tarfile hardlink fallback ignores custom extraction filter rejection via None
OrtaCVSS 5,7İstismar yokEPSS %1python software foundation · cpython11 Eyl 2026
- CVE-2026-1967225İzleyin
tarfile extraction filter bypass allows creation of directories outside the destination
OrtaCVSS 6,3İstismar yokEPSS %1python software foundation · cpython19 Ağu 2026
- CVE-2026-1708424İzleyin
stringprep.map_table_b2() deviates from RFC 3454 Table B.2
OrtaCVSS 6,0İstismar yokEPSS %1python software foundation · cpython18 Ağu 2026
- CVE-2026-1197232İzleyin
tarfile opened in streaming mode mishandles EOF
YüksekCVSS 8,2İstismar yokEPSS %1python software foundation · cpython23 Haz 2026
- CVE-2026-1194031İzleyin
tarfile extraction filter bypass allows escaping the destination directory
YüksekCVSS 7,8İstismar yokEPSS %1python software foundation · cpython23 Haz 2026
- CVE-2026-966932İzleyin
bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow
YüksekCVSS 8,2İstismar yokEPSS %1python software foundation · cpython8 Haz 2026
- CVE-2026-777427İzleyin
tarfile.data_filter path traversal bypass allows writing outside the extraction directory
OrtaCVSS 6,9İstismar yokEPSS %1python software foundation · cpython4 Haz 2026
- CVE-2026-327625İzleyin
Potential DoS via quadratic complexity in unicodedata.normalize()
OrtaCVSS 6,3İstismar yokEPSS %1python software foundation · cpython3 Haz 2026
- CVE-2026-721025İzleyin
The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection
OrtaCVSS 6,3İstismar yokEPSS %1python · python11 May 2026