Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi Pillow Security Advisories

Browse all Security Advisories for pypi Pillow

Loading...
Critical
GSA_kwCzR0hTQS0zZjYzLWhmcDgtNTJqcc4AA4lV
Arbitrary Code Execution in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 40.1
Published: 10 months ago
High
GSA_kwCzR0hTQS1qN2hwLWg4angtNXBwcs4AA10j
libwebp: OOB write in BuildHuffmanTable
Ecosystems: nuget, cargo, pypi, go, npm
Packages: magick.net-q8-x64, magick.net-q8-openmp-x64, magick.net-q8-anycpu, magick.net-q16-x64, magick.net-q16-hdri-anycpu, magick.net-q16-anycpu, webp, Pillow, github.com/chai2010/webp, SkiaSharp, electron, libwebp-sys, libwebp-sys2
Source: GitHub Advisory Database
Blast Radius: 130.8
Published: about 1 year ago
High
GSA_kwCzR0hTQS1ocjhnLWY2cjYtbXIyMs4AArN6
Buffer over-flow in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
Low
GSA_kwCzR0hTQS00Zng5LXZjODgtcTJ4Y80yIw
Infinite loop in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: over 2 years ago
High
GSA_kwCzR0hTQS05ajU5LTc1cWotNzk1d80yIg
Path traversal in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 45.0
Published: over 2 years ago
Moderate
GSA_kwCzR0hTQS1wdzNjLWg3d3AtY3ZoeM0hfQ
Improper Initialization in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: almost 3 years ago
Moderate
GSA_kwCzR0hTQS14cmN2LWY5Z20tdjQyY80hew
Out-of-bounds Read in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: almost 3 years ago
Critical
GSA_kwCzR0hTQS04dmoyLXZ4eDMtNjY3d80hfA
Arbitrary expression injection in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: almost 3 years ago
Critical
GSA_kwCzR0hTQS1wNDloLWhqdm0tamczaM0W2w
PCX P mode buffer overflow in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: about 3 years ago
High
GSA_kwCzR0hTQS0zeHY4LTNqNTQtaGdycM0W2g
Out-of-bounds read in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 27.2
Published: about 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXE1aHEtZnA3Ni1xbXJj
Uncontrolled Resource Consumption in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJ3djctM3Y0NS1oZzI5
Pillow Out-of-bounds Read vulnerability
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 45.0
Published: over 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhqZngtOHA2Yy1nN2d4
Insufficient Verification of Data Authenticity in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 27.2
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWc2cmotcnY3ai14d3A0
Pillow denial of service
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 27.2
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTc3Z2MtdjJ4di1ydnZo
Out-of-bounds Read in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 45.0
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTdyN20tNWgyNy0yOWhw
Potential infinite loop in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLW12ZzkteGZmci1wNzc0
Out of bounds read in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTloeDItaGdxMi0yZzRm
Regular Expression Denial of Service (ReDoS) in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXA0M3ctZzNjNS1nNW1x
Out of bounds read in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXZxY2otd3JmMi03djcz
Pillow Out-of-bounds Write
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 43.6
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTN3dmctbWo2Zy1tOWN2
Pillow Uncontrolled Resource Consumption
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWY0dzgtY3Y2cC14NnI1
Pillow Denial of Service by Uncontrolled Resource Consumption
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTk1cTMtOGdyOS1nbTh3
Pillow Denial of Service by Uncontrolled Resource Consumption
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWNxaGcteGpoaC1wOGhm
Out-of-bounds reads in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 27.2
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTg4NDMtbTdtdy1teHFt
Buffer overflow in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 38.6
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXZqNDIteHEzci1ocjNy
Out-of-bounds reads in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 27.2
Published: over 4 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTQzZnEtdzhxcS12ODho
Out-of-bounds read in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 40.1
Published: over 4 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXI4NTQtOTZncS1yZmcz
Pillow Temporary file name leakage
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 19.8
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhqNjktYzc2di04Nndy
Out-of-bounds Read in Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 35.1
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTh4anYtdjl4cS1tNWg5
Pillow Buffer overflow in ImagingFliDecode
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: over 6 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXc0dmctcmY2My1mM2oz
Arbitrary code using "crafted image file" approach affecting Pillow
Ecosystems: pypi
Packages: Pillow
Source: GitHub Advisory Database
Blast Radius: 38.6
Published: over 6 years ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 3
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 Django 100 apache-airflow 85 Plone 72 ansible 63 salt 56 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 matrix-synapse 35 moin 35 gradio 34 Pillow 31 keystone 31 opencv-contrib-python 31 opencv-python 31 pillow 26 glance 20 langchain 20 cobbler 18 mercurial 18 mindsdb 18 notebook 17 cryptography 16 pyload-ng 16 PaddlePaddle 16 neutron 16 paddlepaddle 16 OctoPrint 15 calibreweb 15 ethyca-fides 15 aiohttp 14 lollms 14 pyftpdlib 14 modoboa 14 vantage6 13 urllib3 12 zenml 12 swift 12 twisted 12 roundup 12 wagtail 12 onionshare-cli 11 waitress 11 horizon 11 trytond 11 opencv-contrib-python-headless 10 opencv-python-headless 10 sentry 10 Flask-AppBuilder 10 nautobot 10 zope 9 ryu 9 kiwitcms 9 cinder 9 pyspark 9 python-keystoneclient 9 aubio 8 pgadmin4 8 label-studio 8 ipython 8 numpy 8 ckan 8 Zope 8 litellm 8 trac 8 inventree 7 matrix-sydent 7 pysaml2 7 scrapy 7 pip 7 jupyter-server 7 lief 7 Products.CMFPlone 7 changedetection.io 6 tornado 6 Zope2 6 graphite-web 6 yt-dlp 6 apache-airflow-providers-apache-hive 6 Moin 6 mage-ai 6 lxml 6 mailman 6 web2py 6 aim 6 requests 6 ansible-core 6 tuf 6 lmdb 5 python-gnupg 5 torchserve 5 ait-core 5 werkzeug 5 saleor 5 dtale 5 Werkzeug 5 paramiko 5 pretix 5 Jinja2 5 oauthenticator 5 nltk 5 grpc 5 grpcio 5 feedparser 5 omero-web 5 whoogle-search 5 jupyterhub 5 langchain-experimental 5 bleach 5 buildbot 4 mobsf 4 Nova 4 PyPDF2 4 aws-iot-device-sdk-v2 4 keylime 4 onnx 4 awsiotsdk 4 langchain-community 4 esphome 4 indy-node 4 FreeTAKServer-UI 4 transformers 4 Pygments 4 pywasm3 4 Weblate 4 codechecker 4 httpie 4 apache-submarine 4 qutebrowser 4 jupyterlab 4 barbican 4 Scrapy 4 apache-iotdb 4 Flask-Security-Too 4 dbt-core 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 indico 4 langflow 4 bottle 4 wasmtime 4 open-webui 4 GitPython 4 tripleo-heat-templates 4 Radicale 4 markdown2 4 streamlit 4 jwcrypto 4 nvflare 4 Keystone 4 reportlab 4 openstack-heat 3 pyarrow 3 poetry 3 localstack 3 python-jose 3 setuptools 3 vanna 3 datasette 3 ydata-profiling 3 torch 3 h2o 3 rsa 3 gerapy 3 openvpn-monitor 3 scikit-learn 3 pyyaml 3 django-tinymce 3 TinyMCE 3 tinymce/tinymce 3 anki 3 tinymce 3 copyparty 3 keyring 3 AccessControl 3 SQLAlchemy 3 pandasai 3 httplib2 3 ray 3 asyncssh 3 ajenti 3 certifi 3 io.grpc:grpc-protobuf 3 protobuf 3 apache-airflow-providers-apache-spark 3 Kallithea 3 Mezzanine 3 sickrage 3 apache-libcloud 3 homeassistant 3 wger 3 asyncua 3 flask 3 snowflake-connector-python 3