Vulnerabilities
Vulnerable Software
Python:  >> Pillow  >> 11.2.1  Security Vulnerabilities
Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, n out-of-bounds write may be triggered when loading a specially crafted PSD image. This vulnerability is fixed in 12.1.1.
CVSS Score
7.5
EPSS Score
0.0
Published
2026-02-11
Pillow is a Python imaging library. In versions 11.2.0 to before 11.3.0, there is a heap buffer overflow when writing a sufficiently large (>64k encoded with default settings) image in the DDS format due to writing into a buffer without checking for available space. This only affects users who save untrusted data as a compressed DDS image. This issue has been patched in version 11.3.0.
CVSS Score
7.1
EPSS Score
0.0
Published
2025-07-01


Contact Us

Shodan ® - All rights reserved