Known Vulnerabilities for CPython by Python Software Foundation
Listed below are 5 of the newest known vulnerabilities associated with "CPython" by "Python Software Foundation".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-34444 json | Lupa integrates the runtimes of Lua or LuaJIT2 into CPython. In 2.6 and earlier, attribute_filter is not consistently applied... | Not Provided | 2026-04-06 | 2026-07-15 |
| CVE-2025-8194 json | There is a defect in the CPython “tarfile” module affecting the “TarFile” extraction and entry enumeration APIs. The ... | Not Provided | 2025-07-28 | 2026-07-31 |
| CVE-2025-4516 json | There is an issue in CPython when using `bytes.decode("unicode_escape", error="ignore|replace")`. If you are not using the "u... | Not Provided | 2025-05-15 | 2026-07-31 |
| CVE-2024-5642 json | CPython 3.9 and earlier doesn't disallow configuring an empty list ("[]") for SSLContext.set_npn_protocols() which is an inva... | Not Provided | 2024-06-27 | 2026-07-31 |
| CVE-2023-6507 json | An issue was found in CPython 3.12.0 `subprocess` module on POSIX platforms. The issue was fixed in CPython 3.12.1 and does n... | Not Provided | 2023-12-08 | 2026-07-31 |