cvss 5.0
how bad it is if exploited, out of 10
epss not scored
chance of exploitation in the next 30 days
xyz score not scored
CyberXYZ composite, out of 10
fig. 01 — GHSA-p8vw-m6qq-w42v, the advisory selected below
// advisories GHSA-p8vw-m6qq-w42v MEDI BIT-python-min-2023-6597 UNKN BIT-python-min-2023-6507 UNKN BIT-python-min-2024-6232 UNKN BIT-python-min-2024-8088 UNKN BIT-python-min-2024-5642 UNKN BIT-python-min-2024-4032 UNKN BIT-python-min-2023-36632 UNKN BIT-python-min-2022-42919 UNKN BIT-python-min-2021-4189 UNKN BIT-python-min-2021-29921 UNKN BIT-python-min-2020-27619 UNKN BIT-python-min-2021-3733 UNKN BIT-django-2021-23336 UNKN
GHSA-p8vw-m6qq-w42v MEDIUM readints in plistlib.py in Python through 3.9.1 is vulnerable to a potential DoS attack via CPU and RAM exhaustion when processing malformed Apple Property List files in binary format.
Affected >=0, <3.6.13, >=3.7.0, <3.7.10, >=3.8.0, <3.8.7, >=3.9.0, <3.9.1 Fixed in not stated Published 2024-03-06 Source osv GHSA
// ai model usage Tracked for PyPI packages. HuggingFace models declare Python dependencies, so nuget packages are not covered.
Checked 2026-09-22 at 00:37 UTC. The most recent advisory here was published 2024-12-13. Updated continuously from NVD, GHSA, OSV and CNA feeds.
Think a verdict here is wrong? Tell us — we respond within 2 business days. Report an issue with this page