6.4
CVSSv2

CVE-2022-24303

Published: 28/03/2022 Updated: 07/11/2023
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 571
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

Pillow prior to 9.0.1 allows malicious users to delete files because spaces in temporary pathnames are mishandled.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

python pillow

fedoraproject fedora 34

fedoraproject fedora 35

Vendor Advisories

Several security issues were fixed in Pillow ...