Pillow vulnerability

Pillow is a Python imaging library. From 10.3.0 to before 12.1.1, an out-of-bounds write may be triggered when loading a specially crafted PSD image. This vulnerability is fixed in 12.1.1.

Published 11 Feb 2026Updated 10 Sep 202626 sources
CVSS 8.6

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.