Vulnerabilities (CVE)

Filtered by vendor Reportlab Subscribe
Filtered by product Reportlab
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-17626 1 Reportlab 1 Reportlab 2020-07-27 7.5 HIGH 9.8 CRITICAL
ReportLab through 3.5.26 allows remote code execution because of toColor(eval(arg)) in colors.py, as demonstrated by a crafted XML document with '<span color="' followed by arbitrary Python code.