Python
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 392 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 4, 2002 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →Super-linear CPU usage for unbounded input to csv.Sniffer.sniff()
Pillow: Out-of-bounds read via attacker-controlled row stride on Pillow's mmap path (McIdas AREA files)
Pillow: Heap out-of-bounds write in Pillow `ImageFilter.RankFilter` via integer overflow in `ImagingExpand`
Pillow: Decompression Bomb DoS via PdfParser.PdfStream.decode()
Pillow TGA RLE encoder can serialize up to ~57 KB of adjacent heap data into generated images
Pillow: Controlled heap out-of-bounds write in `ImageCmsTransform.apply()` via output mode mismatch
Pillow EpsImagePlugin negative %%BeginBinary byte count causes infinite loop denial of service
Pillow: Heap out-of-bounds write `Image.paste()` / `Image.crop()` via signed coordinate overflow
Pillow JPEG2000 tiled decode retains a growing scratch buffer and can be used for denial of service
[oss-security][CVE-2026-15308] Incmental HTMLParser allows CPU-exhaustion DoS via peated unterminated markup declarations
Monitor Python in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.