Skip to content

GitHub Advisory Database

Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

58 advisories

Loading
Arbitrary code using "crafted image file" approach affecting Pillow High
CVE-2016-9190 was published for Pillow (pip) Jul 12, 2018
Uncontrolled Resource Consumption in pillow Moderate
GHSA-jgpv-4h4c-xhw3 was published for pillow (pip) Apr 23, 2021
Infinite loop in Pillow Low
GHSA-4fx9-vc88-q2xc was published for Pillow (pip) Mar 11, 2022
Integer overflow in Pillow High
CVE-2020-5310 was published for Pillow (pip) Nov 3, 2021
Out-of-bounds Read in Pillow Critical
CVE-2021-25287 was published for Pillow (pip) Jun 8, 2021
Out-of-bounds Read Critical
CVE-2021-25288 was published for Pillow (pip) Jun 8, 2021
PCX P mode buffer overflow in Pillow High
CVE-2020-5312 was published for Pillow (pip) Nov 3, 2021
Uncontrolled Resource Consumption in Pillow High
CVE-2019-19911 was published for Pillow (pip) Apr 1, 2020
Out-of-bounds read in Pillow High
CVE-2020-11538 was published for Pillow (pip) Jul 27, 2020
Buffer Overflow in Pillow Critical
CVE-2021-34552 was published for pillow (pip) Oct 5, 2021
tdunlap607
Pillow denial of service via Crafted Block Size Moderate
CVE-2014-3589 was published for pillow (pip) May 14, 2022
Pillow denial of service via PNG bomb Moderate
CVE-2014-9601 was published for pillow (pip) May 14, 2022
PIL and Pillow Vulnerable to Symlink Attack on Tmpfiles Moderate
CVE-2014-1932 was published for pillow (pip) May 17, 2022
Pillow command injection High
CVE-2014-3007 was published for pillow (pip) May 17, 2022
Pillow subject to DoS via SAMPLESPERPIXEL tag High
CVE-2022-45199 was published for pillow (pip) Nov 14, 2022
Insufficient Verification of Data Authenticity in Pillow Moderate
CVE-2021-28678 was published for Pillow (pip) Jun 8, 2021
Pillow Out-of-bounds Read High
CVE-2020-35653 was published for Pillow (pip) Mar 18, 2021
Pillow Denial of service Moderate
CVE-2021-28675 was published for Pillow (pip) Jun 8, 2021
Out-of-bounds Read in Pillow Moderate
CVE-2022-22816 was published for Pillow (pip) Jan 12, 2022
tdunlap607
Out-of-bounds reads in Pillow Moderate
CVE-2020-10994 was published for Pillow (pip) Jul 27, 2020
Buffer overflow in Pillow High
CVE-2020-10379 was published for Pillow (pip) Jul 27, 2020
Buffer Copy without Checking Size of Input in Pillow Critical
CVE-2020-5311 was published for pillow (pip) May 24, 2022
Pillow Integer overflow in Map.c Moderate
CVE-2016-9189 was published for Pillow (pip) Jul 24, 2018
Pillow Buffer overflow in ImagingLibTiffDecode Moderate
CVE-2016-0740 was published for Pillow (pip) Jul 24, 2018
Pillow Buffer overflow in ImagingFliDecode Moderate
CVE-2016-0775 was published for Pillow (pip) Jul 24, 2018
ProTip! Advisories are also available from the GraphQL API