python3.7 vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the python3.7 package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • L
CVE-2024-0450

<3.7.3-2+deb10u7
  • L
CVE-2023-6597

<3.7.3-2+deb10u7
  • M
CVE-2023-40217

<3.7.3-2+deb10u6
  • M
Race Condition

<3.7.3-2+deb10u6
  • H
Use After Free

<3.7.3-2+deb10u6
  • M
Resource Exhaustion

<3.7.3-2+deb10u6
  • C
XML External Entity (XXE) Injection

<3.7.3-2+deb10u6
  • L
Improper Input Validation

*
  • H
Improper Input Validation

*
  • H
Algorithmic Complexity

<3.7.3-2+deb10u5
  • C
Integer Overflow or Wraparound

<3.7.3-2+deb10u4
  • L
Open Redirect

*
  • H
Incorrect Type Conversion or Cast

<3.7.3-2+deb10u5
  • H
Arbitrary Command Injection

<3.7.3-2+deb10u5
  • L
Arbitrary Code Injection

*
  • M
Unchecked Return Value

<3.7.3-2+deb10u5
  • M
Resource Exhaustion

<3.7.3-2+deb10u5
  • H
Resource Exhaustion

<3.7.3-2+deb10u5
  • M
Information Exposure

<3.7.3-2+deb10u5
  • M
HTTP Request Smuggling

*
  • C
Buffer Overflow

<3.7.3-2+deb10u3
  • L
CVE-2020-27619

*
  • H
Improper Encoding or Escaping of Output

<3.7.3-2+deb10u3
  • H
Improper Input Validation

<3.7.3-2+deb10u2
  • M
Resource Exhaustion

<3.7.3-2+deb10u2
  • L
Resource Exhaustion

*
  • M
Resource Exhaustion

<3.7.3-2+deb10u2
  • L
Arbitrary Code Injection

*
  • M
Cross-site Scripting (XSS)

<3.7.3-2+deb10u1
  • H
CVE-2019-16056

<3.7.3-2+deb10u1
  • M
Improper Input Validation

<3.7.3~rc1-1
  • C
Credentials Management

<3.7.3-2+deb10u1
  • C
Directory Traversal

<3.7.3-2+deb10u1
  • M
CRLF Injection

<3.7.3-2+deb10u1
  • M
CRLF Injection

<3.7.3-2+deb10u1
  • C
CVE-2019-9636

<3.7.3~rc1-1
  • H
NULL Pointer Dereference

<3.7.2-2
  • L
Integer Overflow or Wraparound

<3.7.0-7
  • H
Missing Initialization of Resource

<3.7.0-7
  • L
CVE-2018-1061

<3.7.0~b3-1
  • L
CVE-2018-1060

<3.7.0~b3-1
  • L
Arbitrary Code Injection

*