Lucene search

K
cvelistMitreCVELIST:CVE-2023-22898
HistoryJan 10, 2023 - 12:00 a.m.

CVE-2023-22898

2023-01-1000:00:00
mitre
www.cve.org
pandora
zip bomb
denial of service
1.3.0

0.001 Low

EPSS

Percentile

36.9%

workers/extractor.py in Pandora (aka pandora-analysis/pandora) 1.3.0 allows a denial of service when an attacker submits a deeply nested ZIP archive (aka ZIP bomb).

0.001 Low

EPSS

Percentile

36.9%

Related for CVELIST:CVE-2023-22898