CVE-2026-11972EPSS p52.1%

CVE-2026-11972CVE-2026-11972

Description

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, making archive parsing take exponentially longer.

Scoring

EPSS0.71% probability of exploitation · percentile 52.1% · 2026-10-05T12:00:23Z
Last modified2026-08-13
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.