[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2024-8088":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T14:55:33.319Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":19,"aliases":20,"duplicate_of":9,"upstream":21,"downstream":22,"duplicates":89,"related":90,"reserved_at":9,"published_at":123,"modified_at":124,"state":125,"summary":126,"references_raw":135,"kevs":228,"epss":229,"epss_history":232,"metrics":504,"affected":511},"CVE-2024-8088","There is a HIGH severity vulnerability affecting the CPython \"zipfile\"\nmodule affecting \"zipfile.Path\". Note that the more common API \"zipfile.ZipFile\" class is unaffected.\n\n\n\n\n\nWhen iterating over names of entries in a zip archive (for example, methods\nof \"zipfile.Path\" like \"namelist()\", \"iterdir()\", etc)\nthe process can be put into an infinite loop with a maliciously crafted\nzip archive. This defect applies when reading only metadata or extracting\nthe contents of the zip archive. Programs that are not handling\nuser-controlled zip archives are not affected.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":9,"capec":18},"CWE-835","Loop with Unreachable Exit Condition ('Infinite Loop')","The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.","weakness","Incomplete","Base",[],[],[],[],[23,25,27,29,31,33,35,37,39,41,43,45,47,49,51,53,55,57,59,61,63,65,67,69,71,73,75,77,79,81,83,85,87],{"_key":24},"ALPINE-CVE-2024-8088",{"_key":26},"OPENSUSE-SU-2024:14297-1",{"_key":28},"OPENSUSE-SU-2024:14300-1",{"_key":30},"SUSE-SU-2024:4020-1",{"_key":32},"SUSE-SU-2024:4021-1",{"_key":34},"SUSE-SU-2024:4029-1",{"_key":36},"SUSE-SU-2024:3303-1",{"_key":38},"SUSE-SU-2024:3357-1",{"_key":40},"SUSE-SU-2024:3411-1",{"_key":42},"SUSE-SU-2024:3418-1",{"_key":44},"SUSE-SU-2024:3427-1",{"_key":46},"OPENSUSE-SU-2024:14296-1",{"_key":48},"OPENSUSE-SU-2024:14298-1",{"_key":50},"OPENSUSE-SU-2024:14299-1",{"_key":52},"OPENSUSE-SU-2024:14301-1",{"_key":54},"OPENSUSE-SU-2024:14434-1",{"_key":56},"DLA-3980-1",{"_key":58},"DSA-5759-1",{"_key":60},"RHSA-2024:9371",{"_key":62},"SUSE-SU-2025:20065-1",{"_key":64},"SUSE-SU-2025:20154-1",{"_key":66},"SUSE-SU-2025:20374-1",{"_key":68},"OPENSUSE-SU-2025:15713-1",{"_key":70},"RHSA-2024:6163",{"_key":72},"MGASA-2024-0317",{"_key":74},"UBUNTU-CVE-2024-8088",{"_key":76},"USN-7015-1",{"_key":78},"DEBIAN-CVE-2024-8088",{"_key":80},"RHSA-2024:6961",{"_key":82},"RHSA-2024:6962",{"_key":84},"RHSA-2024:9190",{"_key":86},"RHSA-2024:9192",{"_key":88},"RHSA-2024:5962",[],[91,92,93,94,95,96,97,98,99,100,101,102,103,104,105,106,107,108,109,110,111,113,115,117,119,121],{"_key":26},{"_key":28},{"_key":30},{"_key":32},{"_key":34},{"_key":36},{"_key":38},{"_key":40},{"_key":42},{"_key":44},{"_key":46},{"_key":48},{"_key":50},{"_key":52},{"_key":54},{"_key":62},{"_key":64},{"_key":66},{"_key":68},{"_key":72},{"_key":112},"CGA-362H-2FQP-Q7R5",{"_key":114},"CGA-7RQ9-FCWV-WQHW",{"_key":116},"CGA-8X7F-RG65-F966",{"_key":118},"CGA-C952-XWVV-JMV7",{"_key":120},"CGA-PJR3-5PX4-VVC4",{"_key":122},"CGA-X5HR-2777-6G5P","2024-08-22T18:45:31.807Z","2025-11-03T22:32:54.340Z","Deferred",{"cisa_kev":127,"cisa_ransomware":127,"cisa_vendor":9,"epss_severity":128,"epss_score":129,"severity":130,"severity_score":131,"severity_version":132,"severity_source":133,"severity_vector":134,"severity_status":125},false,"low",0.0023,"high",8.7,"v4.0","cve.org","CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/S:N/AU:N/R:U/RE:L",[136,142,147,152,156,160,164,168,172,176,180,184,188,192,196,200,204,208,212,216,220,224],{"url":137,"sources":138,"tags":140},"https://mail.python.org/archives/list/security-announce@python.org/thread/GNFCKVI4TCATKQLALJ5SN4L4CSPSMILU/",[133,139],"nvd",[141],"Vendor Advisory",{"url":143,"sources":144,"tags":145},"https://github.com/python/cpython/pull/122906",[133,139],[146],"Patch",{"url":148,"sources":149,"tags":150},"https://github.com/python/cpython/issues/122905",[133,139],[151],"Issue Tracking",{"url":153,"sources":154,"tags":155},"https://github.com/python/cpython/commit/795f2597a4be988e2bb19b69ff9958e981cb894e",[133,139],[146],{"url":157,"sources":158,"tags":159},"https://github.com/python/cpython/commit/8c7348939d8a3ecd79d630075f6be1b0c5b41f64",[133,139],[146],{"url":161,"sources":162,"tags":163},"https://github.com/python/cpython/commit/dcc5182f27c1500006a1ef78e10613bb45788dea",[133,139],[146],{"url":165,"sources":166,"tags":167},"https://github.com/python/cpython/commit/e0264a61119d551658d9445af38323ba94fc16db",[133,139],[146],{"url":169,"sources":170,"tags":171},"https://github.com/python/cpython/issues/123270",[133,139],[151],{"url":173,"sources":174,"tags":175},"https://github.com/python/cpython/commit/2231286d78d328c2f575e0b05b16fe447d1656d6",[133,139],[146],{"url":177,"sources":178,"tags":179},"https://github.com/python/cpython/commit/7e8883a3f04d308302361aeffc73e0e9837f19d4",[133,139],[146],{"url":181,"sources":182,"tags":183},"https://github.com/python/cpython/commit/95b073bddefa6243effa08e131e297c0383e7f6a",[133,139],[146],{"url":185,"sources":186,"tags":187},"https://github.com/python/cpython/commit/7bc367e464ce50b956dd232c1dfa1cad4e7fb814",[133,139],[146],{"url":189,"sources":190,"tags":191},"https://github.com/python/cpython/commit/962055268ed4f2ca1d717bfc8b6385de50a23ab7",[133,139],[146],{"url":193,"sources":194,"tags":195},"https://github.com/python/cpython/commit/fc0b8259e693caa8400fa8b6ac1e494e47ea7798",[133,139],[146],{"url":197,"sources":198,"tags":199},"https://github.com/python/cpython/commit/0aa1ee22ab6e204e9d3d0e9dd63ea648ed691ef1",[133,139],[146],{"url":201,"sources":202,"tags":203},"https://github.com/python/cpython/commit/9cd03263100ddb1657826cc4a71470786cab3932",[133,139],[146],{"url":205,"sources":206,"tags":207},"http://www.openwall.com/lists/oss-security/2024/08/22/1",[133,139],[],{"url":209,"sources":210,"tags":211},"http://www.openwall.com/lists/oss-security/2024/08/22/4",[133,139],[],{"url":213,"sources":214,"tags":215},"http://www.openwall.com/lists/oss-security/2024/08/23/1",[133,139],[],{"url":217,"sources":218,"tags":219},"http://www.openwall.com/lists/oss-security/2024/08/23/2",[133,139],[],{"url":221,"sources":222,"tags":223},"https://security.netapp.com/advisory/ntap-20241011-0010/",[133,139],[],{"url":225,"sources":226,"tags":227},"https://lists.debian.org/debian-lts-announce/2024/12/msg00000.html",[133,139],[],[],{"date":230,"score":129,"percentile":231},"2026-06-04",0.45912,[233,237,240,243,246,249,252,255,258,261,265,268,271,274,277,281,283,286,289,292,295,298,301,303,306,309,312,315,318,321,324,327,330,333,336,339,342,345,348,351,354,357,360,363,366,369,372,375,378,380,383,385,388,391,393,396,400,403,406,409,412,415,418,421,424,427,430,433,436,440,443,446,449,452,455,458,461,464,467,470,472,476,479,482,485,488,492,495,498,501],{"date":234,"score":235,"percentile":236},"2025-11-04",0.00226,0.45343,{"date":238,"score":235,"percentile":239},"2025-11-05",0.45331,{"date":241,"score":235,"percentile":242},"2025-11-06",0.45344,{"date":244,"score":235,"percentile":245},"2025-11-07",0.4537,{"date":247,"score":235,"percentile":248},"2025-11-08",0.45367,{"date":250,"score":235,"percentile":251},"2025-11-09",0.45347,{"date":253,"score":235,"percentile":254},"2025-11-10",0.45311,{"date":256,"score":235,"percentile":257},"2025-11-11",0.45327,{"date":259,"score":235,"percentile":260},"2025-11-12",0.45358,{"date":262,"score":263,"percentile":264},"2025-11-13",0.0022,0.4462,{"date":266,"score":263,"percentile":267},"2025-11-14",0.44635,{"date":269,"score":263,"percentile":270},"2025-11-15",0.44628,{"date":272,"score":263,"percentile":273},"2025-11-16",0.44609,{"date":275,"score":263,"percentile":276},"2025-11-17",0.4458,{"date":278,"score":279,"percentile":280},"2025-11-18",0.01971,0.82087,{"date":282,"score":279,"percentile":280},"2025-11-19",{"date":284,"score":279,"percentile":285},"2025-11-20",0.82092,{"date":287,"score":235,"percentile":288},"2025-11-21",0.45336,{"date":290,"score":235,"percentile":291},"2025-11-22",0.45332,{"date":293,"score":235,"percentile":294},"2025-11-23",0.45307,{"date":296,"score":235,"percentile":297},"2025-11-24",0.45299,{"date":299,"score":235,"percentile":300},"2025-11-25",0.45308,{"date":302,"score":235,"percentile":300},"2025-11-26",{"date":304,"score":235,"percentile":305},"2025-11-27",0.45314,{"date":307,"score":235,"percentile":308},"2025-11-28",0.45281,{"date":310,"score":235,"percentile":311},"2025-11-29",0.45262,{"date":313,"score":263,"percentile":314},"2025-11-30",0.44495,{"date":316,"score":263,"percentile":317},"2025-12-01",0.44632,{"date":319,"score":263,"percentile":320},"2025-12-02",0.44646,{"date":322,"score":263,"percentile":323},"2025-12-03",0.44641,{"date":325,"score":263,"percentile":326},"2025-12-04",0.44497,{"date":328,"score":263,"percentile":329},"2025-12-05",0.44523,{"date":331,"score":263,"percentile":332},"2025-12-06",0.44518,{"date":334,"score":263,"percentile":335},"2025-12-07",0.445,{"date":337,"score":263,"percentile":338},"2025-12-08",0.44507,{"date":340,"score":263,"percentile":341},"2025-12-09",0.44542,{"date":343,"score":263,"percentile":344},"2025-12-10",0.4461,{"date":346,"score":263,"percentile":347},"2025-12-11",0.44636,{"date":349,"score":263,"percentile":350},"2025-12-12",0.44665,{"date":352,"score":263,"percentile":353},"2025-12-13",0.44644,{"date":355,"score":263,"percentile":356},"2025-12-14",0.44619,{"date":358,"score":263,"percentile":359},"2025-12-15",0.44602,{"date":361,"score":263,"percentile":362},"2025-12-16",0.44623,{"date":364,"score":263,"percentile":365},"2025-12-17",0.44662,{"date":367,"score":263,"percentile":368},"2025-12-18",0.44705,{"date":370,"score":263,"percentile":371},"2025-12-19",0.44718,{"date":373,"score":263,"percentile":374},"2025-12-20",0.44688,{"date":376,"score":263,"percentile":377},"2025-12-21",0.44656,{"date":379,"score":263,"percentile":267},"2025-12-22",{"date":381,"score":263,"percentile":382},"2025-12-23",0.44633,{"date":384,"score":263,"percentile":353},"2025-12-24",{"date":386,"score":263,"percentile":387},"2025-12-25",0.44695,{"date":389,"score":263,"percentile":390},"2025-12-26",0.44676,{"date":392,"score":263,"percentile":387},"2025-12-27",{"date":394,"score":263,"percentile":395},"2025-12-28",0.44601,{"date":397,"score":398,"percentile":399},"2025-12-29",0.00244,0.476,{"date":401,"score":398,"percentile":402},"2025-12-30",0.47594,{"date":404,"score":398,"percentile":405},"2025-12-31",0.47638,{"date":407,"score":398,"percentile":408},"2026-01-01",0.47799,{"date":410,"score":398,"percentile":411},"2026-01-02",0.47777,{"date":413,"score":398,"percentile":414},"2026-01-03",0.47763,{"date":416,"score":398,"percentile":417},"2026-01-04",0.47586,{"date":419,"score":398,"percentile":420},"2026-01-05",0.47569,{"date":422,"score":398,"percentile":423},"2026-01-06",0.47573,{"date":425,"score":398,"percentile":426},"2026-01-07",0.4759,{"date":428,"score":398,"percentile":429},"2026-01-08",0.47611,{"date":431,"score":398,"percentile":432},"2026-01-09",0.47585,{"date":434,"score":398,"percentile":435},"2026-01-10",0.47577,{"date":437,"score":438,"percentile":439},"2026-01-11",0.00332,0.55549,{"date":441,"score":438,"percentile":442},"2026-01-12",0.55503,{"date":444,"score":438,"percentile":445},"2026-01-13",0.5548,{"date":447,"score":438,"percentile":448},"2026-01-14",0.55525,{"date":450,"score":438,"percentile":451},"2026-01-15",0.55529,{"date":453,"score":438,"percentile":454},"2026-01-16",0.5555,{"date":456,"score":438,"percentile":457},"2026-01-17",0.55545,{"date":459,"score":438,"percentile":460},"2026-01-18",0.55537,{"date":462,"score":438,"percentile":463},"2026-01-19",0.55528,{"date":465,"score":438,"percentile":466},"2026-01-20",0.55531,{"date":468,"score":438,"percentile":469},"2026-01-21",0.55534,{"date":471,"score":438,"percentile":460},"2026-01-22",{"date":473,"score":474,"percentile":475},"2026-01-23",0.00285,0.5161,{"date":477,"score":474,"percentile":478},"2026-01-24",0.51616,{"date":480,"score":474,"percentile":481},"2026-01-25",0.51569,{"date":483,"score":474,"percentile":484},"2026-01-26",0.51548,{"date":486,"score":474,"percentile":487},"2026-01-27",0.51554,{"date":489,"score":490,"percentile":491},"2026-01-28",0.00341,0.56308,{"date":493,"score":490,"percentile":494},"2026-01-29",0.56311,{"date":496,"score":490,"percentile":497},"2026-01-30",0.56316,{"date":499,"score":490,"percentile":500},"2026-01-31",0.56319,{"date":502,"score":490,"percentile":503},"2026-02-01",0.5646,[505,508],{"source":133,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":9,"cvss_v4_0":506},{"baseScore":131,"baseSeverity":507,"vectorString":134,"impactScore":9,"exploitabilityScore":9},"HIGH",{"source":139,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":9,"cvss_v4_0":509},{"baseScore":131,"baseSeverity":507,"vectorString":510,"impactScore":9,"exploitabilityScore":9},"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:U/V:X/RE:L/U:X",[512],{"ecosystem":9,"name":513,"vendor":514,"product":515,"cpe_part":516,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":517},"CPython","python software foundation","cpython","a",[518,523,528,532,536,540],{"version":519,"is_range":520,"range_type":133,"version_start":9,"version_start_type":9,"version_end":521,"version_end_type":522,"fixed_in":9},"\u003C 3.8.20",true,"3.8.20","excluding",{"version":524,"is_range":520,"range_type":133,"version_start":525,"version_start_type":526,"version_end":527,"version_end_type":522,"fixed_in":9},">= 3.9.0, \u003C 3.9.20","3.9.0","including","3.9.20",{"version":529,"is_range":520,"range_type":133,"version_start":530,"version_start_type":526,"version_end":531,"version_end_type":522,"fixed_in":9},">= 3.10.0, \u003C 3.10.15","3.10.0","3.10.15",{"version":533,"is_range":520,"range_type":133,"version_start":534,"version_start_type":526,"version_end":535,"version_end_type":522,"fixed_in":9},">= 3.11.0, \u003C 3.11.10","3.11.0","3.11.10",{"version":537,"is_range":520,"range_type":133,"version_start":538,"version_start_type":526,"version_end":539,"version_end_type":522,"fixed_in":9},">= 3.12.0, \u003C 3.12.6","3.12.0","3.12.6",{"version":541,"is_range":520,"range_type":133,"version_start":542,"version_start_type":526,"version_end":543,"version_end_type":522,"fixed_in":9},">= 3.13.0a1, \u003C 3.13.0rc2","3.13.0a1","3.13.0rc2"]