pydicom CVE 脆弱性と CVE 一覧(1)

製品(CPE): — CVE 件数: 1

pydicom 脆弱性概要

This page aggregates publicly disclosed CVE and security risk information related to pydicom, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

脆弱性分布の推移(直近24か月)

表示中 11 / 1 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2026-32711 pydicom is a pure Python package for working with DICOM files. Versions 2.0.0-rc.1 through 3.0.1 are vulnerable to Path Traversal through a maliciously crafted DICOMDIR ReferencedFileID when it is set to a path outside the File-set root. pydicom resolves the path only to confirm that it exists, but does not verify that the resolved path remains under the File-set root. Subsequent public FileSet operations such as copy(), write(), and remove()+write(use_existing=True) use that unchecked path in f [email protected] 7.8 0.02% 2026-03-20 2026-03-23
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence