CVE-2026-0864EPSS p2.8%

CVE-2026-0864CVE-2026-0864

Description

When using the "configparser" module to write configuration files containing multi-line text values with carriage return characters (\r) the resulting file could be injected with unexpected keys and values if the attacker controls the written value.

Scoring

EPSS0.13% probability of exploitation · percentile 2.8% · 2026-08-08T12:02:54Z
Last modified2026-08-06
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.