CVE Number Vulnerability Product Severity Date
CVE-2023-52425 Libexpat Denial of Service Vulnerability Libexpat High 30-05-2024

Technical Information

A denial of service vulnerability in libexpat due to many full reparsings are required in the case of a large token for which multiple buffer fills are needed.

Patch Release Date: Mar 19, 2024
Further information on this vulnerability is available at: CVE-2023-52425

Affected Software

Python before 3.12.3,
Python before 3.11.9,
Python before 3.10.14,
Python before 3.9.19,
Python before 3.8.19