Pillow

Latest version: v11.0.0

The latest version of pillow with no known security vulnerabilities is 11.0.0. We recommend installing version 11.0.0.

The information on this page was curated by experts in our Cybersecurity Intelligence Team.

Latest release
v11.0.0 at Oct. 15, 2024
License
MIT-CMU (CMU License)

Description

Python Imaging Library (Fork)

Resources

Vulnerabilities (59)

See all vulnerabilities
Affected versions:

<2.3.2 | >=2.5.0,<2.5.2

Pillow versions affected versions include a fix for CVE-2014-3…
Affected versions:

>=9.2.0,<9.3.0

Pillow before 9.3.0 allows denial of service via SAMPLESPERPIX…
Affected versions:

<9.2.0

Pillow before 9.2.0 performs Improper Handling of Highly Compr…
Affected versions:

>=9.1.0,<9.3.0

Pillow 9.3.0 includes a security fix: Pillow will now decode t…
Affected versions:

>=9.1.0,<9.1.1

libImaging/TgaRleDecode.c in Pillow 9.1.0 has a heap buffer ov…
Affected versions:

<9.0.1

Pillow before 9.0.1 allows attackers to delete files because s…

Versions (99)

See all versions

Has known vulnerabilities

  • 11.0.0
  • 10.4.0
  • 10.3.0
  • 10.2.0
  • 10.1.0
  • 10.0.1
  • 10.0.0
  • 9.5.0
  • 9.4.0
  • 9.3.0
  • 9.2.0
  • 9.1.1
  • 9.1.0
  • 9.0.1
  • 9.0.0
  • 8.4.0
  • 8.3.2
  • 8.3.1
  • 8.3.0
  • 8.2.0