Miss Islington (bot)
125 exploits
Active since Jun 2019
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython < 3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.3, 3.13.0a1 - Incorrect Default Permissions
CVSS 7.1
Python <3.10.14-3.13.0a5 - Memory Corruption
CVSS 7.4
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython - Zip File Path Traversal
Python CPython - HTTP Header Injection
CPython 3.12.0 - Improper Privilege Management in subprocess extra_groups Parameter
CVSS 6.1
CPython <3.12.1-3.8.18 - Use After Free
CVSS 7.8
Python <3.10.14-3.13.0a5 - Memory Corruption
CVSS 7.4
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython - Zip File Path Traversal
Python CPython - HTTP Header Injection
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython < 3.8.20 - Inefficient Regular Expression Complexity in http.cookies Module
CVSS 7.5
CPython urllib.parse - Bracketed Host Validation Bypass
Python < 3.13.11 - Uncontrolled Resource Consumption via HTTP Response Content-Length
CVSS 7.5
webbrowser.open() allows leading dashes in URLs
CVSS 3.3
CPython 3.12.0-3.12.8, 3.13.0-3.13.1, 3.14.0a1-3.14.0a2 - Resource Consumption in asyncio
CVSS 7.5
CPython <3.8.20, 3.9.0-3.9.19, 3.10.0-3.10.14, 3.11.0-3.11.9, 3.12.0-3.12.4, 3.13.0a1-3.13.0rc0 - Socket Connection Race
CPython < 3.8.20 - Inefficient Regular Expression Complexity in http.cookies Module
CVSS 7.5
CPython urllib.parse - Bracketed Host Validation Bypass