Threats Tagged 'cve-2026-6100'
View all threats tagged with 'cve-2026-6100'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-6100'
Click on any threat for detailed analysis and mitigation recommendations
Security update for pythonCVE-2026-1703 0 A security update for Python addresses multiple vulnerabilities including directory traversal during wheel archive extraction, improper ZIP file validation in pip, incomplete command injection mitigation in webbrowser.open(), insufficient neutralization of embedded characters in BaseCookie.js_output(), use-after-free leading to arbitrary code execution or information disclosure in decompression modules, and pip self-update importing newly installed modules improperly. These issues collectively pose a high risk to affected systems. The update also includes a change for SLE-12-SP1 to use a vendored libffi version. Join the discussion | GCVE Database | 06/12/2026, 13:57:53 UTC Added: 06/13/2026, 10:23:24 UTC |
CVE-2026-1502: Vulnerability in Python Software Foundation CPythonCVE-2026-1502 0 CR/LF bytes were not rejected by HTTP client proxy tunnel headers or host. Join the discussion | GCVE Database | 04/10/2026, 17:54:44 UTC Added: 05/27/2026, 21:15:27 UTC |
CVE-2026-4786: CWE-77 in Python Software Foundation CPythonCVE-2026-4786 0 Mitgation of CVE-2026-4519 was incomplete. If the URL contained "%action" the mitigation could be bypassed for certain browser types the "webbrowser.open()" API could have commands injected into the underlying shell. See CVE-2026-4519 for details. Join the discussion | GCVE Database | 04/13/2026, 21:52:19 UTC Added: 05/27/2026, 21:15:27 UTC |
Red Hat Security Advisory: python3.12 security updateCVE-2026-4786 0 Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100) * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 04/27/2026, 09:47:17 UTC Added: 05/27/2026, 21:15:27 UTC |
Red Hat Security Advisory: python3.11 security updateCVE-2026-4786 0 Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100) * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 04/27/2026, 12:40:13 UTC Added: 05/27/2026, 21:15:27 UTC |
Red Hat Security Advisory: python3.9 security updateCVE-2026-4786 0 Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100) * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 04/27/2026, 15:00:43 UTC Added: 05/27/2026, 21:15:27 UTC |
Red Hat Security Advisory: python3.11 security updateCVE-2026-4786 0 Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100) * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 04/27/2026, 20:58:25 UTC Added: 05/27/2026, 21:15:27 UTC |
Red Hat Security Advisory: python3 security updateCVE-2026-4786 0 Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100) * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 04/27/2026, 21:31:09 UTC Added: 05/27/2026, 21:15:27 UTC |
Red Hat Security Advisory: python3.11 security updateCVE-2026-4786 0 Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100) * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 05/05/2026, 11:18:07 UTC Added: 05/27/2026, 21:15:27 UTC |
Red Hat Security Advisory: python3.11 security updateCVE-2026-4786 0 Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * python: Python: Arbitrary code execution or information disclosure via use-after-free in decompression modules (CVE-2026-6100) * python: cpython: Python: Arbitrary code execution via command injection in webbrowser.open() API (CVE-2026-4786) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Join the discussion | GCVE Database | 05/07/2026, 04:55:03 UTC Added: 05/27/2026, 21:15:27 UTC |
Showing 1 to 10 of 30 results