CVE-2024-4030
- EPSS 0.03%
- Published 07.05.2024 21:15:09
- Last modified 21.11.2024 09:42:03
On Windows a directory returned by tempfile.mkdtemp() would not always have permissions set to restrict reading and writing to the temporary directory by other users, instead usually inheriting the correct permissions from the default location. Alter...
CVE-2024-0450
- EPSS 0.19%
- Published 19.03.2024 16:15:09
- Last modified 11.04.2025 22:15:28
An issue was found in the CPython `zipfile` module affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior. The zipfile module is vulnerable to “quoted-overlap” zip-bombs which exploit the zip format to create a zip-bomb with a high...
CVE-2023-6597
- EPSS 0.08%
- Published 19.03.2024 16:15:08
- Last modified 21.11.2024 08:44:10
An issue was found in the CPython `tempfile.TemporaryDirectory` class affecting versions 3.12.1, 3.11.7, 3.10.13, 3.9.18, and 3.8.18 and prior. The tempfile.TemporaryDirectory class would dereference symlinks during cleanup of permissions-related er...