CVE-2026-11972EPSS p36.6%

CVE-2026-11972CVE-2026-11972

Description

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, making archive parsing take exponentially longer.

Scoring

EPSS0.45% probability of exploitation · percentile 36.6% · 2026-08-08T12:02:54Z
Last modified2026-08-06
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.