Serhiy Storchaka
129 exploits
Active since Oct 2020
Python <3.14 - Path Traversal
CVSS 9.4
CPython 3.12.0 - Improper Privilege Management in subprocess extra_groups Parameter
CVSS 6.1
CPython <3.12.1-3.8.18 - Use After Free
CVSS 7.8
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython 3.12-3.12.10, 3.13-3.13.3, 3.14a1-3.14b2 - Path Traversal via TarFile Extraction Filter
CVSS 5.3
CPython HTTP Header Injection in email Module
CVSS 5.5
CPython < 3.8.20 - Inefficient Regular Expression Complexity in http.cookies Module
CVSS 7.5
CPython Path Traversal via TarFile Extraction Filter Bypass
CVSS 7.5
CPython Path Traversal via TarFile Extraction Filter Bypass
CVSS 7.5
CPython TarFile - Incorrect Extraction with errorlevel=0
CVSS 7.5
Python <3.14 - Path Traversal
CVSS 9.4
CPython 3.12.0 - Improper Privilege Management in subprocess extra_groups Parameter
CVSS 6.1
CPython <3.12.1-3.8.18 - Use After Free
CVSS 7.8
CPython Zip Bomb Asymmetric Resource Consumption
CVSS 6.2
CPython 3.12-3.12.10, 3.13-3.13.3, 3.14a1-3.14b2 - Path Traversal via TarFile Extraction Filter
CVSS 5.3
CPython HTTP Header Injection in email Module
CVSS 5.5
CPython < 3.8.20 - Inefficient Regular Expression Complexity in http.cookies Module
CVSS 7.5
Python < 3.13.11 - Uncontrolled Resource Consumption via HTTP Response Content-Length
CVSS 7.5
Python < 3.13.10 - Denial of Service via plistlib Malicious File Size Handling
CVSS 5.5
CPython Path Traversal via TarFile Extraction Filter Bypass
CVSS 7.5
CPython Path Traversal via TarFile Extraction Filter Bypass
CVSS 7.5
CPython TarFile - Incorrect Extraction with errorlevel=0
CVSS 7.5
CPython - Info Disclosure
Python <3.14 - Path Traversal
CVSS 9.4
CPython 3.12-3.12.10, 3.13-3.13.3, 3.14a1-3.14b2 - Path Traversal via TarFile Extraction Filter
CVSS 5.3