All vulnerabilities

CVE-2021-28675

Pillow denial of service

Description

An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on the number of input layers relative to the size of the data block. This could lead to a DoS on Image.open prior to Image.load.

Patch Available

Fix available through Seal Security. 

No upgrade required, protect your application instantly.

Fix without upgrading
Score
Severity
Ecosystem
Python
Publish Date
June 2, 2021
Modified Date
December 5, 2023
Score Vector
Affected Versions