Serhiy Storchaka
129 exploits
Active since Oct 2020
Python Software Foundation CPython - Potential DoS via Quadratic Complexity in unicodedata.normalize()
shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
CVSS 7.5
Python Software Foundation CPython - Potential DoS via Quadratic Complexity in unicodedata.normalize()
shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
CVSS 7.5
Python Software Foundation CPython - Potential DoS via Quadratic Complexity in unicodedata.normalize()
shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
CVSS 7.5
Python Software Foundation CPython - Potential DoS via Quadratic Complexity in unicodedata.normalize()
shutil.unpack_archive() doesn't check for Windows absolute paths in ZIPs
CVSS 7.5
Python Software Foundation CPython - Potential DoS via Quadratic Complexity in unicodedata.normalize()
Python 3.0.0-3.9.0 - Remote Code Execution via CJK Codec Test HTTP Content
CVSS 9.8
Python 3.0.0-3.9.0 - Remote Code Execution via CJK Codec Test HTTP Content
CVSS 9.8
Python 3.0.0-3.9.0 - Remote Code Execution via CJK Codec Test HTTP Content
CVSS 9.8
Python 3.0.0-3.9.0 - Remote Code Execution via CJK Codec Test HTTP Content
CVSS 9.8
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython 3.12-3.12.10, 3.13-3.13.3, 3.14a1-3.14b2 - Path Traversal via TarFile Extraction Filter
CVSS 5.3
CPython <3.12.1-3.8.18 - Use After Free
CVSS 7.8
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython 3.12-3.12.10, 3.13-3.13.3, 3.14a1-3.14b2 - Path Traversal via TarFile Extraction Filter
CVSS 5.3
CPython <3.12.1-3.8.18 - Use After Free
CVSS 7.8
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython 3.12-3.12.10, 3.13-3.13.3, 3.14a1-3.14b2 - Path Traversal via TarFile Extraction Filter
CVSS 5.3
CPython <3.12.1-3.8.18 - Use After Free
CVSS 7.8
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython 3.12-3.12.10, 3.13-3.13.3, 3.14a1-3.14b2 - Path Traversal via TarFile Extraction Filter
CVSS 5.3
CPython Path Traversal via TarFile Extraction Filter Bypass
CVSS 7.5