python
130 articles with this tag
LOW
INFO
INFO
INFO
INFO
MEDIUM
MEDIUM
INFO
INFO
LOW
HIGH
MEDIUM
HIGH
HIGH
MEDIUM
MEDIUM
LOW
INFO
MEDIUM
HIGH
MEDIUM
LOW
HIGH
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
INFO
INFO
MEDIUM
CRITICAL
HIGH
HIGH
CRITICAL
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
INFO
INFO
LOW
LOW
MEDIUM
CRITICAL
HIGH
MEDIUM
CRITICAL
MEDIUM
CRITICAL
CRITICAL
HIGH
HIGH
MEDIUM
HIGH
MEDIUM
INFO
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
MEDIUM
LOW
MEDIUM
MEDIUM
MEDIUM
MEDIUM
LOW
MEDIUM
MEDIUM
MEDIUM
MEDIUM
INFO
LOW
MEDIUM
HIGH
MEDIUM
INFO
MEDIUM
HIGH
Vulnérabilité dans CPython (26 mai 2026)
RHSA-2026:20573: Moderate: python-tornado security update
RHSA-2026:20577: Moderate: python-tornado security update
RHSA-2026:19571: Important: python3.9 security update
RHSA-2026:19576: Important: python3.9 security update
RHSA-2026:19590: Important: python3 security update
RHSA-2026:19589: Important: python security update
RHSA-2026:19570: Important: python3.9 security update
RHSA-2026:19176: Important: python3.14 security update
RHSA-2026:19197: Low: python-jwcrypto security update
RHSA-2026:19175: Important: python3.11 security update
RHSA-2026:19189: Moderate: python-tornado security update
RHSA-2026:19177: Important: python3.12 security update
RHSA-2026:19155: Important: python-markdown security update
RHSA-2026:18958: Moderate: python3.12 security update
RHSA-2026:18957: Moderate: python3.11 security update
RHSA-2026:19042: Low: python-jwcrypto security update
RHSA-2026:19034: Moderate: python-tornado security update
[NEU] [mittel] CPython: Schwachstelle ermöglicht Manipulation von Daten
RHSA-2026:17619: Important: python3 security update
RHSA-2026:17525: Important: python3.12 security update
[NEU] [niedrig] CPython: Schwachstelle ermöglicht Denial of Service
JDownloader site hacked to replace installers with Python RAT malware
DSA-6259-1 pyjwt - security update
PyPI Packages Deliver ZiChatBot Malware via Zulip APIs on Windows and Linux
Backdoored PyTorch Lightning package drops credential stealer
Sophisticated Deep#Door Backdoor Enables Espionage, Disruption
PyTorch Lightning Compromised in PyPI Supply Chain Attack to Steal Credentials
lightning PyPI Compromise: A Bun-Based Credential Stealer in Python
New Python Backdoor Uses Tunneling Service to Steal Browser and Cloud Credentials
CVE-2026-3298 Out-of-bounds write in Windows asyncio.ProacterEventLoop.sock_recvfrom_into() when using nbytes
CVE-2026-6357 pip self-update functionality can import newly installed modules after wheel installation
USN-8225-1: Python marshmallow vulnerabilities
LiteLLM exploited within 36 hours of disclosure via SQL injection bug
RHSA-2026:11722: Important: python-urllib3 security update
USN-8221-1: wheel vulnerability
LiteLLM CVE-2026-42208 SQL Injection Exploited within 36 Hours of Disclosure
Vulnérabilité dans Python (28 avril 2026)
RHSA-2026:11077: Important: python3 security update
RHSA-2026:11062: Important: python3.11 security update
PyPI package with 1.1M monthly downloads hacked to push infostealer
RHSA-2026:10774: Important: python3.11 security update
RHSA-2026:10745: Important: python3.12 security update
RHSA-2026:10711: Important: python3.12 security update
CVE-2026-41140 Poetry: Path traversal in tar extraction on Python 3.10.0 - 3.10.12 and 3.11.0 - 3.11.4
RHSA-2026:10102: Important: python security update
RHSA-2026:10101: Important: python3.9 security update
RHSA-2026:10111: Important: python3.12 security update
Vulnérabilité dans Python (22 avril 2026)
[NEU] [mittel] lxml: Schwachstelle ermöglicht Offenlegung von Informationen
[NEU] [hoch] CPython: Schwachstelle ermöglicht nicht spezifizierten Angriff
RHSA-2026:9289: Important: python3 security update
RHSA-2026:9386: Important: python3 security update
RHSA-2026:9261: Important: python3.9 security update
RHSA-2026:9260: Important: python3.11 security update
DSA-6220-1 simpleeval - security update
DSA-6219-1 pillow - security update
[NEU] [mittel] CPython: Schwachstelle ermöglicht Manipulation von Daten
Multiples vulnérabilités dans Python (14 avril 2026)
[NEU] [mittel] CPython: Mehrere Schwachstellen
Multiples vulnérabilités dans Python (13 avril 2026)
Critical flaw in Marimo Python notebook exploited within 10 hours of disclosure
[NEU] [mittel] CPython: Mehrere Schwachstellen
Marimo RCE Flaw CVE-2026-39987 Exploited Within 10 Hours of Disclosure
Critical Marimo Flaw Exploited Hours After Public Disclosure
[NEU] [mittel] Django: Mehrere Schwachstellen
Python Supply-Chain Compromise
DSA-6195-1 python-tornado - security update
Weaponizing the Protectors: TeamPCP’s Multi-Stage Supply Chain Attack on Security Infrastructure
USN-8134-1: pyasn1 vulnerabilities
Week in review: NIST updates DNS security guidance, compromised LiteLLM PyPI packages
New Infinity Stealer malware grabs macOS data via ClickFix lures
TeamPCP Pushes Malicious Telnyx Versions to PyPI, Hides Stealer in WAV Files
NICKEL ALLEY strategy: Fake it ‘til you make it
TeamPCP Targets Telnyx Package in Latest PyPI Software Supply Chain Attack
LiteLLM malware supply chain attack analysis (pt-BR only, sorry)
TeamPCP Expands Supply Chain Campaign With LiteLLM PyPI Compromise
LiteLLM PyPI packages compromised in expanding TeamPCP supply chain attacks
How a Poisoned Security Scanner Became the Key to Backdooring LiteLLM
LiteLLM loses game of Trivy pursuit, gets compromised
TeamPCP Backdoors LiteLLM Versions 1.82.7–1.82.8 Likely via Trivy CI/CD Compromise
[UPDATE] [niedrig] Python: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[UPDATE] [niedrig] CPython: Schwachstelle ermöglicht Denial of Service
First instance of PylangGhost RAT observed on npm
[NEU] [mittel] PyTorch: Schwachstelle ermöglicht Codeausführung
Vulnérabilité dans Python (19 mars 2026)
[NEU] [niedrig] Python: Schwachstelle ermöglicht Path Traversal
USN-8018-3: Python 2.7 vulnerabilities
[UPDATE] [mittel] Python: Schwachstelle ermöglicht Umgehung von Sicherheitsmechanismen
VU#624941: LibreChat RAG API contains a log-injection vulnerability
Vulnérabilité dans Python (13 mars 2026)
USN-8018-2: Python regression
The great license-washing has begun
Vulnérabilité dans CPython (05 mars 2026)
[NEU] [mittel] CPython: Schwachstelle ermöglicht Umgehen von Sicherheitsvorkehrungen
[NEU] [mittel] Django: Mehrere Schwachstellen
DSA-6150-1 python-django - security update
Snyk and uv, Better Together
[NEU] [mittel] Red Hat Enterprise Linux (Python Protobuf): Schwachstelle ermöglicht Denial of Service
Fraud Investigation Reveals Sophisticated Python Malware