Skip to content

CVE-2025-66418

CVE

Threat entity extracted from intelligence sources

Frequency
11
occurrences
First Seen
December 11, 2025
Last Seen
May 29, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

Recent updates for openSUSE Leap address multiple vulnerabilities affecting the containerized-data-importer and python-urllib3 packages. Key issues include denial of service and excessive resource consumption due to improper handling of compressed data and unbounded decompression chains. Users of op...

On May 29, 2026, Ubuntu announced a regression in pip due to patches for CVE-2025-66471, which were initially intended to fix vulnerabilities in pip on Ubuntu 22.04 LTS, 24.04 LTS, and 26.04 LTS. The regression caused issues with TLS certificate verification, potentially allowing remote attackers to...

Multiple security vulnerabilities were discovered in the pip package installer affecting Ubuntu 20.04 LTS, 18.04 LTS, and 16.04 LTS. These vulnerabilities could allow attackers to execute arbitrary code or cause denial of service. The issues were addressed in the security update USN-8010-1.

A vulnerability in urllib3 was identified that could allow an attacker to exploit excessive resource usage through specially crafted network traffic. This issue arises from improper handling of decompression during HTTP redirects, potentially leading to a denial of service. Users of urllib3 are advi...

Public Exploits

Checking GitHub for proof-of-concept code…