VendorsPythonpillowall versions
Vulnerabilities

Python Pillow

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

73CVEs
CVE-2026-54060
Pillow: `FontFile.compile()`: `Image.new()` called without `_decompression_bomb_check()`
Published 2026-07-06 · Analyzed
7.5EPSS 0.004
CVE-2026-54059
Pillow: PcfFontFile._load_bitmaps()`: `Image.frombytes()` called without `_decompression_bomb_check()` — bomb protection bypass via PCF font loading
Published 2026-07-06 · Analyzed
7.5EPSS 0.004
CVE-2026-59205
Pillow: Controlled heap out-of-bounds write in `ImageCmsTransform.apply()` via output mode mismatch
Published 2026-07-14 · Analyzed
7.5EPSS 0.004
CVE-2026-59200
Pillow: Decompression Bomb DoS via PdfParser.PdfStream.decode()
Published 2026-07-14 · Analyzed
7.5EPSS 0.004
CVE-2026-59199
Pillow: Heap out-of-bounds write `Image.paste()` / `Image.crop()` via signed coordinate overflow
Published 2026-07-14 · Modified
7.5EPSS 0.004
CVE-2026-59198
Pillow TGA RLE encoder can serialize up to ~57 KB of adjacent heap data into generated images
Published 2026-07-14 · Analyzed
7.5EPSS 0.003
CVE-2020-5313
libImaging/FliDecode.c in Pillow before 6.2.2 has an FLI buffer overflow.
Published 2020-01-03 · Modified
7.1EPSS 0.028
CVE-2020-35653
In Pillow before 8.1.0, PcxDecode has a buffer over-read when decoding a crafted PCX file because the user-supplied stride value is trusted for buffer calculations.
Published 2021-01-12 · Modified
7.1EPSS 0.016
CVE-2025-48379
Pillow Vulnerable to Write Buffer Overflow on BCn encoding
Published 2025-07-01 · Analyzed
7.1EPSS 0.003
CVE-2024-28219
In _imagingcms.c in Pillow before 10.3.0, a buffer overflow exists because strcpy is used instead of strncpy.
Published 2024-04-03 · Modified
6.7EPSS 0.010
CVE-2016-2533
Buffer overflow in the ImagingPcdDecode function in PcdDecode.c in Pillow before 3.1.1 and Python Imaging Library (PIL) 1.1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted PhotoCD file.
Published 2016-04-13 · Modified
6.5EPSS 0.040
CVE-2016-0740
Buffer overflow in the ImagingLibTiffDecode function in libImaging/TiffDecode.c in Pillow before 3.1.1 allows remote attackers to overwrite memory via a crafted TIFF file.
Published 2016-04-13 · Modified
6.5EPSS 0.026
CVE-2022-22815
path_getbbox in path.c in Pillow before 9.0.0 improperly initializes ImagePath.Path.
Published 2022-01-07 · Modified
6.5EPSS 0.026
CVE-2016-0775
Buffer overflow in the ImagingFliDecode function in libImaging/FliDecode.c in Pillow before 3.1.1 allows remote attackers to cause a denial of service (crash) via a crafted FLI file.
Published 2016-04-13 · Modified
6.5EPSS 0.025
CVE-2022-22816
path_getbbox in path.c in Pillow before 9.0.0 has a buffer over-read during initialization of ImagePath.Path.
Published 2022-01-07 · Modified
6.5EPSS 0.019
CVE-2021-25292
An issue was discovered in Pillow before 8.1.1. The PDF parser allows a regular expression DoS (ReDoS) attack via a crafted PDF file because of a catastrophic backtracking regex.
Published 2021-03-19 · Modified
6.5EPSS 0.016
CVE-2020-35655
In Pillow before 8.1.0, SGIRleDecode has a 4-byte buffer over-read when decoding crafted SGI RLE image files because offsets and length tables are mishandled.
Published 2021-01-12 · Modified
5.8EPSS 0.016
CVE-2016-3076
Heap-based buffer overflow in the j2k_encode_entry function in Pillow 2.5.0 through 3.1.1 allows remote attackers to cause a denial of service (memory corruption) via a crafted Jpeg2000 file.
Published 2017-04-24 · Modified
5.5EPSS 0.026
CVE-2016-9189
Pillow before 3.3.2 allows context-dependent attackers to obtain sensitive information by using the "crafted image file" approach, related to an "Integer Overflow" issue affecting the Image.core.map_buffer in map.c component.
Published 2016-11-04 · Modified
5.5EPSS 0.019
CVE-2020-10177
Pillow before 7.1.0 has multiple out-of-bounds reads in libImaging/FliDecode.c.
Published 2020-06-25 · Modified
5.5EPSS 0.015
CVE-2020-10994
In libImaging/Jpeg2KDecode.c in Pillow before 7.1.0, there are multiple out-of-bounds reads via a crafted JP2 file.
Published 2020-06-25 · Modified
5.5EPSS 0.014
CVE-2020-10378
In libImaging/PcxDecode.c in Pillow before 7.1.0, an out-of-bounds read can occur when reading PCX files where state->shuffle is instructed to read beyond state->buffer.
Published 2020-06-25 · Modified
5.5EPSS 0.011
CVE-2021-28675
An issue was discovered in Pillow before 8.2.0. PSDImagePlugin.PsdImageFile lacked a sanity check on the number of input layers relative to the size of the data block. This could lead to a DoS on Image.open prior to Image.load.
Published 2021-06-02 · Modified
5.5EPSS 0.010
CVE-2021-28678
An issue was discovered in Pillow before 8.2.0. For BLP data, BlpImagePlugin did not properly check that reads (after jumping to file offsets) returned data. This could lead to a DoS where the decoder could be run a large number of times on empty data.
Published 2021-06-02 · Modified
5.5EPSS 0.007
CVE-2026-42309
Pillow: Heap buffer overflow with nested list coordinates
Published 2026-05-09 · Analyzed
5.5EPSS 0.001
CVE-2026-42310
Pillow: PDF Parsing Trailer Infinite Loop (DoS)
Published 2026-05-09 · Analyzed
5.5EPSS 0.001
CVE-2026-42308
Pillow: Integer overflow when processing fonts
Published 2026-05-09 · Analyzed
5.5EPSS 0.001
CVE-2014-9601
Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is decompressed.
Published 2015-01-16 · Modified
5.0EPSS 0.046
CVE-2014-3589
PIL/IcnsImagePlugin.py in Python Imaging Library (PIL) and Pillow before 2.3.2 and 2.5.x before 2.5.2 allows remote attackers to cause a denial of service via a crafted block size.
Published 2014-08-25 · Modified
5.0EPSS 0.034
CVE-2014-3598
The Jpeg2KImagePlugin plugin in Pillow before 2.5.3 allows remote attackers to cause a denial of service via a crafted image.
Published 2015-05-01 · Modified
5.0EPSS 0.020
CVE-2026-55798
Pillow: WindowsViewer.get_command() OS command injection via unescaped shell path
Published 2026-07-06 · Analyzed
4.5EPSS 0.002
CVE-2014-1932
The (1) load_djpeg function in JpegImagePlugin.py, (2) Ghostscript function in EpsImagePlugin.py, (3) load function in IptcImagePlugin.py, and (4) _copy function in Image.py in Python Image Library (PIL) 1.1.7 and earlier and Pillow before 2.3.1 do not properly create temporary files, which allow local users to overwrite arbitrary files and obtain sensitive information via a symlink attack on the temporary file.
Published 2014-04-17 · Modified
4.4EPSS 0.005
CVE-2014-1933
The (1) JpegImagePlugin.py and (2) EpsImagePlugin.py scripts in Python Image Library (PIL) 1.1.7 and earlier and Pillow before 2.3.1 uses the names of temporary files on the command line, which makes it easier for local users to conduct symlink attacks by listing the processes.
Published 2014-04-17 · Modified
2.1EPSS 0.005
← Prev2 / 2