Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-54034
HistoryMar 15, 2021 - 12:00 a.m.

Pillow has an unspecified vulnerability (CNVD-2021-54034)

2021-03-1500:00:00
China National Vulnerability Database
www.cnvd.org.cn
15

0.001 Low

EPSS

Percentile

44.0%

Pillow is a Python-based image processing library. Pillow version 8.1.1 previously contained a security vulnerability that could be exploited by attackers to conduct regular expression DoS (ReDoS) attacks via crafted PDF files.

CPENameOperatorVersion
pillow pillowlt8.1.1