Skip to content

Bundled libwebp in Pillow vulnerable

High severity GitHub Reviewed Published Oct 5, 2023 to the GitHub Advisory Database

Package

pip pillow (pip)

Affected versions

< 10.0.1

Patched versions

10.0.1

Description

Published to the GitHub Advisory Database Oct 5, 2023
Reviewed Oct 5, 2023

Severity

High

Weaknesses

No CWEs

CVE ID

No known CVE

GHSA ID

GHSA-56pw-mpj4-fxww

Source code

Loading Checking history
See something to contribute? Suggest improvements for this vulnerability.