Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
Recent updates for openSUSE Leap address multiple vulnerabilities affecting the containerized-data-importer and python-urllib3 packages. Key issues include denial of service and excessive resource consumption due to improper handling of compressed data and unbounded decompression chains. Users of op...
On May 29, 2026, Ubuntu announced a regression in pip due to patches for CVE-2025-66471, which were initially intended to fix vulnerabilities in pip on Ubuntu 22.04 LTS, 24.04 LTS, and 26.04 LTS. The regression caused issues with TLS certificate verification, potentially allowing remote attackers to...
Multiple security vulnerabilities were discovered in the pip package installer affecting Ubuntu 20.04 LTS, 18.04 LTS, and 16.04 LTS. These vulnerabilities could allow attackers to execute arbitrary code or cause denial of service. The issues were addressed in the security update USN-8010-1.
A vulnerability in urllib3 was identified that could allow an attacker to exploit excessive resource usage through specially crafted network traffic. This issue arises from improper handling of decompression during HTTP redirects, potentially leading to a denial of service. Users of urllib3 are advi...