Zope / RestrictedPython
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-76825 | RestrictedPython: Sandbox escape via string.Formatter field resolution | HIGH | 8.4 | Sep 16, 2026 |
| CVE-2026-55830 | RestrictedPython guard hooks can be shadowed via positional-only arguments | HIGH | 8.3 | Jul 8, 2026 |
| CVE-2025-22153 | try/except* clauses could allow bypass RestrictedPython via type confusion bug in the CPython interpreter | HIGH | 7.9 | Jan 23, 2025 |
| CVE-2024-47532 | RestrictedPython information leakage via `AttributeError.obj` and the `string` module | HIGH | 8.7 | Sep 30, 2024 |
| CVE-2023-41039 | Sandbox escape via various forms of "format" in RestrictedPython | HIGH | 8.3 | Aug 30, 2023 |
| CVE-2023-37271 | RestrictedPython vulnerable to arbitrary code execution via stack frame sandbox escape | CRITICAL | 9.9 | Jul 11, 2023 |
Showing 1 to 6 of 6 CVEs