CVE-2022-24303

Pillow before 9.0.1 allows attackers to delete files because spaces in temporary pathnames are mishandled.
Configurations

Configuration 1

cpe:2.3:a:python:pillow:*:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*

Information

Published : 2022-03-28 02:15

Updated : 2023-01-31 05:50


NVD link : CVE-2022-24303

Mitre link : CVE-2022-24303

Products Affected
No products.