All vulnerabilities
CVE-2021-23437
Uncontrolled Resource Consumption in pillow
Description
The package pillow from 0 and before 8.3.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the getrgb function.
Patch Available
Fix available through Seal Security.
No upgrade required, protect your application instantly.
Fix without upgrading
Score
Severity
Ecosystem
Python
Publish Date
September 3, 2021
Modified Date
December 5, 2023
Score Vector
Affected Versions

