Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29558
HistoryMar 04, 2021 - 2:17 a.m.

Regular Expression Denial-of-Service (ReDoS)

2021-03-0402:17:19
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

0.001 Low

EPSS

Percentile

44.2%

pillow is vulnerable to regular expression denial of service. Usage of an insecure regex allows an attacker to cause excessive CPU consumption when parsing a malicious PDF file.