Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi pillow Security Advisories

Browse all Security Advisories for pypi pillow

Loading...
High
GSA_kwCzR0hTQS00NHdtLWYyNDQteGhwM84AA6j6
Pillow buffer overflow vulnerability
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 33.2
Published: 8 months ago
High
GSA_kwCzR0hTQS04Z2hqLXA0dmotbXIzNc4AA250
Pillow Denial of Service vulnerability
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: about 1 year ago
High
GSA_kwCzR0hTQS01NnB3LW1wajQtZnh3d84AA2QC
Bundled libwebp in Pillow vulnerable
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 0.0
Published: about 1 year ago
High
GSA_kwCzR0hTQS1tMnZ2LTV2ajUtMmhtN84AAv2p
Pillow vulnerable to Data Amplification attack.
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: about 2 years ago
High
GSA_kwCzR0hTQS1xNG1wLWp2aDItNzZmas4AAv2m
Pillow subject to DoS via SAMPLESPERPIXEL tag
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: about 2 years ago
Critical
GSA_kwCzR0hTQS1yN3JtLThqNmgtcjkzM84AAjLe
Buffer Copy without Checking Size of Input in Pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS04bTl4LXB4d3EtajIzNs4AAelu
Pillow command injection
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: over 2 years ago
High
GSA_kwCzR0hTQS12OXBjLTltdnAteDg3Z84AAbp5
Pillow Buffer overflow in Jpeg2KEncode.c
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 27.2
Published: over 2 years ago
High
GSA_kwCzR0hTQS14ODk1LTJ3cm0taHZwN84AAbcx
PIL and Pillow Vulnerable to Symlink Attack on Tmpfiles
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 38.1
Published: over 2 years ago
High
GSA_kwCzR0hTQS1oNXJmLXZncXgtd2p2Ms4AAU_b
Pillow denial of service via PNG bomb
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 2 years ago
High
GSA_kwCzR0hTQS1qNmY3LWc0MjUtNGdteM4AAU-u
Pillow is vulnerable to Denial of Service (DOS) in the Jpeg2KImagePlugin
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 2 years ago
High
GSA_kwCzR0hTQS1jZm1yLTM4ZzktZjJoN84AAU-s
Pillow denial of service via Crafted Block Size
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 2 years ago
Critical
GSA_kwCzR0hTQS12Y3FnLTNwMjkteHc3M80W2Q
Integer overflow in Pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 43.6
Published: about 3 years ago
Critical
GSA_kwCzR0hTQS03NTM0LW1tNDUtYzc0ds0WKQ
Buffer Overflow in Pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: about 3 years ago
High
GSA_kwCzR0hTQS05OHZ2LXB3NnItcTZxNM0VnA
Uncontrolled Resource Consumption in pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: about 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWpncHYtNGg0Yy14aHcz
Uncontrolled Resource Consumption in pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTh4anEtOGZjZy1nNWh3
Out-of-bounds Write in Pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 3 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTU3aDMtOXJnci1jMjRt
Out of bounds write in Pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWY1ZzgtNXFxNy05Mzh3
Pillow Out-of-bounds Read
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 35.1
Published: over 3 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhmNjQteDRncS1wOTlo
Pillow Out-of-bounds Read
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 26.7
Published: over 3 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTVnbTMtcHg2NC1ydzcy
Uncontrolled Resource Consumption in Pillow
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: over 4 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWo3bWotNzQ4eC03cDc4
DOS attack in Pillow when processing specially crafted image files
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 37.1
Published: about 5 years ago
Critical
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWh2cjgtNDY2cC03NXJo
Pillow Integer overflow in ImagingResampleHorizontal
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 48.5
Published: over 6 years ago
High
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLTNjNWMtNzIzNS05OTRq
Pillow buffer overflow in ImagingPcdDecode
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: over 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLXJ3cjMtYzJxOC1nbTU2
Pillow Integer overflow in Map.c
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 27.2
Published: over 6 years ago
Moderate
MDE2OlNlY3VyaXR5QWR2aXNvcnlHSFNBLWhnZ3gtM2g3Mi00OXd3
Pillow Buffer overflow in ImagingLibTiffDecode
Ecosystems: pypi
Packages: pillow
Source: GitHub Advisory Database
Blast Radius: 32.2
Published: over 6 years ago
Statistics
Advisories: 20,668
Packages: 9,040
Repositories: 4
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 427 tensorflow-cpu 423 Django 100 apache-airflow 85 Plone 72 ansible 63 salt 56 apache-superset 51 nova 47 mlflow 46 django 44 rdiffweb 42 plone 41 vyper 38 matrix-synapse 35 moin 35 gradio 34 keystone 31 opencv-contrib-python 31 opencv-python 31 Pillow 31 pillow 26 langchain 20 glance 20 cobbler 18 mindsdb 18 mercurial 18 notebook 17 PaddlePaddle 16 pyload-ng 16 neutron 16 paddlepaddle 16 cryptography 16 OctoPrint 15 ethyca-fides 15 calibreweb 15 aiohttp 14 pyftpdlib 14 modoboa 14 lollms 14 vantage6 13 wagtail 12 roundup 12 urllib3 12 zenml 12 twisted 12 swift 12 waitress 11 onionshare-cli 11 trytond 11 horizon 11 opencv-python-headless 10 opencv-contrib-python-headless 10 nautobot 10 sentry 10 Flask-AppBuilder 10 ryu 9 python-keystoneclient 9 pyspark 9 kiwitcms 9 cinder 9 zope 9 aubio 8 trac 8 pgadmin4 8 litellm 8 ckan 8 numpy 8 label-studio 8 ipython 8 Zope 8 jupyter-server 7 pysaml2 7 scrapy 7 Products.CMFPlone 7 inventree 7 lief 7 matrix-sydent 7 pip 7 tornado 6 Zope2 6 aim 6 lxml 6 changedetection.io 6 graphite-web 6 mailman 6 requests 6 tuf 6 mage-ai 6 Moin 6 yt-dlp 6 ansible-core 6 apache-airflow-providers-apache-hive 6 web2py 6 oauthenticator 5 Jinja2 5 ait-core 5 lmdb 5 werkzeug 5 langchain-experimental 5 Werkzeug 5 pretix 5 jupyterhub 5 paramiko 5 whoogle-search 5 grpc 5 nltk 5 python-gnupg 5 feedparser 5 torchserve 5 saleor 5 bleach 5 omero-web 5 dtale 5 grpcio 5 transformers 4 Flask-Security-Too 4 FreeTAKServer-UI 4 indy-node 4 Scrapy 4 keylime 4 streamlit 4 jupyterlab 4 open-webui 4 barbican 4 langflow 4 Nova 4 indico 4 qutebrowser 4 onnx 4 Radicale 4 codechecker 4 apache-submarine 4 PyPDF2 4 Pygments 4 pywasm3 4 Weblate 4 httpie 4 nvflare 4 esphome 4 Keystone 4 markdown2 4 tripleo-heat-templates 4 GitPython 4 jwcrypto 4 wasmtime 4 buildbot 4 reportlab 4 awsiotsdk 4 mobsf 4 bottle 4 langchain-community 4 aws-iot-device-sdk-v2 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 apache-iotdb 4 dbt-core 4 keystonemiddleware 3 openc3 3 pycrypto 3 vanna 3 ecdsa 3 mysql-connector-python 3 quokka 3 snowflake-connector-python 3 fava 3 octavia 3 keyring 3 mistune 3 torch 3 anki 3 sanic 3 pyyaml 3 apache-libcloud 3 ydata-profiling 3 openc3 3 mitmproxy 3 protobuf 3 setuptools 3 pyarrow 3 ansible-runner 3 mayan-edms 3 h2o 3 python-jose 3 ujson 3 openvpn-monitor 3 datasette 3 slixmpp 3 rsa 3 RestrictedPython 3 llama-index 3 poetry 3 AccessControl 3 io.grpc:grpc-protobuf 3 localstack 3 Twisted 3 SQLAlchemy 3 sosreport 3 llama-index-core 3 plone.supermodel 3