Python Software Foundation
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 110 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 4, 2002 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →[oss-security][CVE-2026-12003] CPython In-te (development) search paths can be enabled without modifying install dictory
bz2.BZ2Decompressor reuse after error can cause a stack buffer overflow
[oss-security][CVE-2026-3276] Potential DoS via quadratic complexity in unicodedata.normalize()
Potential DoS via quadratic complexity in unicodedata.normalize()
[oss-security][CVE-2026-7210] Cpython: The expat and elementte parsers use insufficient entropy for XML hash-flooding protection
The expat and elementtree parsers use insufficient entropy for XML hash-flooding protection
[oss-security][CVE-2026-3087] shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
Out-of-bounds read/write during remote profiling and asyncio process introspection when connecting to malicious target
Incomplete mitigation of CVE-2026-4519, %action expansion for command injection to webbrowser.open()
Monitor Python Software Foundation in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.