Python
Security Risk Profile
Security Risk Score
Comprehensive risk assessment based on 360 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from October 4, 2002 to present
Threat Assessment
Severity Distribution
Exploit Likelihood
Age Distribution
Common Weaknesses (CWE)
Most Affected Products
Recent Vulnerabilities
See more →[oss-security][CVE-2026-8328] CPython: FTP PASV SSRF, ftpcp() does not use actual peer addss, trusts server-supplied PASV host addss
FTP PASV SSRF, ftpcp() does not use actual peer address, trusts server-supplied PASV host address
[oss-security][CVE-2026-7210] Cpython: The expat and elementte parsers use insufficient entropy for XML hash-flooding protection
urllib3: Decompression-bomb safeguards bypassed in parts of the streaming API
urllib3: Sensitive headers forwarded across origins in proxied low-level redirects
Pillow: OOB Write with Invalid PSD Tile Extents (Integer Overflow)
Pillow: PDF Parsing Trailer Infinite Loop (DoS)
Pillow: Integer overflow when processing fonts
Pillow: Heap buffer overflow with nested list coordinates
shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
Monitor Python in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.