CVE-2018-1060EPSS p92.1%
CVE-2018-1060CVE-2018-1060
python / python
Description
python before versions 2.7.15, 3.4.9, 3.5.6rc1, 3.6.5rc1 and 3.7.0 is vulnerable to catastrophic backtracking in pop3lib's apop() method. An attacker could use this flaw to cause denial of service.
Scoring
| CVSS | 7.5 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
| EPSS | 5.04% probability of exploitation · percentile 92.1% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-08 |