CVE-2020-7788EPSS p89.3%
CVE-2020-7788CVE-2020-7788
ini_project / ini
Description
This affects the package ini before 1.3.6. If an attacker submits a malicious INI file to an application that parses it with ini.parse, they will pollute the prototype on the application. This can be exploited further depending on the context.
Scoring
| CVSS | 7.3 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L |
| EPSS | 3.65% probability of exploitation · percentile 89.3% · 2026-10-10T12:00:23Z |
| Last modified | 2026-10-08 |