Gregory P. Smith
53 exploits
Active since Aug 2022
CPython < 3.8.20 - Denial of Service via TarFile Header Parsing ReDoS
CVSS 7.5
CPython 3.12.0 - Improper Privilege Management in subprocess extra_groups Parameter
CVSS 6.1
Python urllib.parse - Bracketed Host Validation Server-Side Request Forgery
CVSS 3.7
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython < 3.8.20 - Denial of Service via TarFile Header Parsing ReDoS
CVSS 7.5
Python urllib.parse - Bracketed Host Validation Server-Side Request Forgery
CVSS 3.7
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython < 3.8.20 - Denial of Service via TarFile Header Parsing ReDoS
CVSS 7.5
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython < 3.8.20 - Denial of Service via TarFile Header Parsing ReDoS
CVSS 7.5
CPython TarFile Extraction Infinite Loop Vulnerability
CVSS 7.5
CPython < 3.8.20 - Denial of Service via TarFile Header Parsing ReDoS
CVSS 7.5
CPython TarFile Extraction Infinite Loop Vulnerability
CVSS 7.5
CPython < 3.8.20 - Denial of Service via TarFile Header Parsing ReDoS
CVSS 7.5
CPython TarFile Extraction Infinite Loop Vulnerability
CVSS 7.5
Python CPython - HTTP Header Injection
CPython TarFile Extraction Infinite Loop Vulnerability
CVSS 7.5
Python CPython - HTTP Header Injection
CPython TarFile Extraction Infinite Loop Vulnerability
CVSS 7.5
CPython TarFile Extraction Infinite Loop Vulnerability
CVSS 7.5
Python CPython - HTTP Header Injection
Python 3.6.0-3.6.13 - FTP Client Passive Mode Connection Spoofing
CVSS 5.3
CPython 3.12.0 - Improper Privilege Management in subprocess extra_groups Parameter
CVSS 6.1
Python urllib.parse - Bracketed Host Validation Server-Side Request Forgery
CVSS 3.7
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race