Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:29587
HistoryMar 08, 2021 - 2:01 a.m.

Regular Expression Denial Of Service (DoS)

2021-03-0802:01:12
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.002 Low

EPSS

Percentile

64.4%

pillow is vulnerable to regular expression denial of service. Usage of an insecure regex allows an attacker to cause excessive CPU consumption when parsing a malicious PDF file.