← All images

python

Updated: 2026-04-29 05:50 UTC  |  Commit: d48be5a

PackageVersionSeverityCVEFix VersionDescription
python-3.143.14.4-r3HIGHCVE-2026-3298n/aThe method "sock_recvfrom_into()" of "asyncio.ProacterEventLoop" (Windows only) was missing a boundary check for the data buffer when using nbytes par
glibc2.43-r6HIGHCVE-2026-5928n/aCalling the ungetwc function on a FILE stream with wide characters encoded in a character set that has overlaps between its single byte and multi-byte
python-3.143.14.4-r3MEDIUMCVE-2025-15366n/aThe imaplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containin
python-3.143.14.4-r3MEDIUMCVE-2025-15367n/aThe poplib module, when passed a user-controlled command, can have additional commands injected using newlines. Mitigation rejects commands containing
python-3.143.14.4-r3MEDIUMCVE-2025-12781n/aWhen passing data to the b64decode(), standard_b64decode(), and urlsafe_b64decode() functions in the "base64" module the characters "+/" will always b
python-3.143.14.4-r3LOWCVE-2026-6019n/ahttp.cookies.Morsel.js_output() returns an inline <script> snippet and only escapes " for JavaScript string context. It does not neutralize the HTML p