🌐
CVE Details
cvedetails.com › version › 1371187 › Python-Python-3.12.html
Python Python 3.12 security vulnerabilities, CVEs
This page lists vulnerability statistics for CVEs published in the last ten years, if any, for Python » Python » 3.12 .
🌐
Snyk
security.snyk.io › snyk vulnerability database › linux › wolfi
python-3.12 - Vulnerability
Security vulnerabilities and package health score for wolfi:latest package python-3.12
Discussions

Corporate IT have banned all versions of python lower than the latest
Don't know what your environments look like, but we upgraded almost all of ours to 3.12, I would definitely recommend it. Most packages are already up to date. That being said, if IT doesn't understand why you might need to run 3.11 for some packages, can't you simply provide them a list of the packages that don't support 3.12 and tell them you'll upgrade those systems when their dependencies catch up? More on reddit.com
🌐 r/Python
218
942
November 21, 2023
Critical Vulnerabilities in Python 3.12 stdlib on Azure Functions Docker Image
I am currently building and deploying an Azure Function using Python 3.12 in a Docker container. Upon running security scans (e.g., with pip-audit and safety), I encountered multiple critical/high vulnerabilities associated with stdlib version 1.20.14,… More on learn.microsoft.com
🌐 learn.microsoft.com
1
0
[bitnami/python] : Vulnerability findings in Python 3.10, 3.11 & 3.12
Name and Version bitnami/python:3.10, bitnami/python:3.11, bitnami/python:3.12 What architecture are you using? amd64 What steps will reproduce the bug? There are some vulnerability findings I came across while making a regular scan. Rep... More on github.com
🌐 github.com
5
September 13, 2024
Python 3.10.13 or Python 3.11.6 or Python 3.11.5?
I just had a bad experience with python 3.12 and learned that it's not really good for now You should really be asking for help with your problems with 3.12. Python 3.12 is the current release version and is considered stable. It's far more likely that whatever issues you encountered are due to user error rather than actual issues in Python 3.12. More on reddit.com
🌐 r/learnpython
27
0
October 30, 2023
🌐
Maikuolan
maikuolan.github.io › Vulnerability-Charts › python.html
Vulnerability Charts – Python
January 7, 2026 - A chart of which Python versions are safe/unsafe, and their CVSS.
🌐
Reddit
reddit.com › r/python › corporate it have banned all versions of python lower than the latest
r/Python on Reddit: Corporate IT have banned all versions of python lower than the latest
November 21, 2023 -

I.e. right now they are insisting we use v3.12 only because older versions have some vulnerabilities their scanner picked up.

I need to somehow explain that this is a terrible idea and that many packages won't support the most up to date version without causing them to panic and overstep even more.

This requirement is company wide (affects development, data science and analytics).

Edit - thanks for all the advice, I think the crux is that they don't understand how the versioning works and are confusing major and minor versions. I will explain this and hopefully we will be able to use the latest minor versions for 3.11/3.10/3.9

🌐
CVE Details
cvedetails.com › version › 2065837 › Python-Python-3.12.12.html
Python Python 3.12.12 security vulnerabilities, CVEs
This page lists vulnerability statistics for CVEs published in the last ten years, if any, for Python » Python » 3.12.12 .
🌐
CVE Details
cvedetails.com › version › 1661684 › Python-Python-3.10.12.html
Python Python 3.10.12 security vulnerabilities, CVEs
This page lists vulnerability statistics for CVEs published in the last ten years, if any, for Python » Python » 3.10.12 .
🌐
Cybersecurity Help
cybersecurity-help.cz › vdb › soft › python_org › python › 3.12.3
Known vulnerabilities in Python.org Python 3.12.3
3.15.0a7 3.12.13 3.11.15 3.10.20 3.15.0a6 3.13.12 3.14.3 3.15.0a5 3.15.0a4 3.15.0a3 3.14.2 3.13.11 3.14.1 3.13.10 3.15.0a2 3.9 3.9.25 3.15.0a1 3.13.9 3.11.14 3.10.19 3.9.24 3.12.12 3.13.8 3.14.0rc3 3.14.0rc2 3.13.7 3.13.6 3.14.0rc1 3.14.0b4 3.14.0 3.14.0b3 3.13.5 3.13.4 3.12.11 3.11.13 3.9.23 3.10.18 3.14.0b2 3.14.0b1 3.14.0a7 3.13.3 3.12.10 3.11.12 3.9.22 3.10.17 3.14.0a6 3.14.0a5 3.14.0a4 3.14.0a3 3.14.0a2 3.14.0a1 3.13.0rc3 3.13.0rc2 3.13.0rc1 3.13.0b4 3.13.0b3 3.13.0b2 3.13.0b1 3.13.0a6 3.13.0a5 3.13.0a4 3.13.0a3 3.13.0a2 3.13.0a1 3.12.0rc3 3.12.0rc2 3.12.0rc1 3.12.0b4 3.12.0b3 3.12.0b2 3.
🌐
CVE Details
cvedetails.com › version › 1723147 › Python-Python-3.12.0.html
Python Python 3.12.0 security vulnerabilities, CVEs
Vulnerability statistics provide a quick overview for security vulnerabilities of Python » Python » version 3.12.0 alpha1 .
🌐
Sweet
sweet.security › blog › python-tar-file-vulnerability-cve-2024-12718-what-you-need-to-know
Critical Python Tarfile Vulnerability (CVE-2024-12718) Explained
June 4, 2025 - CVE-2024-12718 affects Python 3.12+ tarfile module, allowing privilege escalation and forensic evasion. Learn the risks, fixes, and how Sweet detects it.
Find elsewhere
🌐
Vulert
vulert.com › vuln-db › almalinux-8-python3-12-171556
Security Update for Python 3.12: Addressing Multiple Vulnerabilities
September 24, 2024 - The vulnerabilities in Python 3.12 include incorrect handling of IPv4 and IPv6 private ranges (CVE-2024-4032), improper quoting of newlines in email headers within the email module leading to header injection (CVE-2024-6923), and a potential ...
🌐
CVE Details
cvedetails.com › vulnerability-list › vendor_id-10210 › product_id-18230 › Python-Python.html
Python Python : Security vulnerabilities, CVEs
An issue in the urllib.parse component of Python before 3.11.4 allows attackers to bypass blocklisting methods by supplying a URL that starts with blank characters. ... An issue was found in CPython 3.12.0 `subprocess` module on POSIX platforms. The issue was fixed in CPython 3.12.1 and does not affect other stable releases. When using the `extra_groups=` parameter with an empty list as a value (ie `extra_groups=[]`) the logic regressed to not call `setgroups(0, NULL)` before calling `exec()`, thus not dropping the original processes' groups before starting the new process.
🌐
Microsoft Learn
learn.microsoft.com › en-us › answers › questions › 2107897 › critical-vulnerabilities-in-python-3-12-stdlib-on
Critical Vulnerabilities in Python 3.12 stdlib on Azure Functions Docker Image - Microsoft Q&A
I am currently building and deploying an Azure Function using Python 3.12 in a Docker container. Upon running security scans (e.g., with pip-audit and safety), I encountered multiple critical/high vulnerabilities associated with stdlib version 1.20.14,…
🌐
Python
docs.python.org › 3 › library › security_warnings.html
Security Considerations — Python 3.14.3 documentation
The following modules have specific security considerations: base64: base64 security considerations in RFC 4648, hashlib: all constructors take a “usedforsecurity” keyword-only argument disabling k...
🌐
Stack
stack.watch › product › python › python
Python Security Vulnerabilities in 2026 - stack.watch
An XML External Entity (XXE) issue was discovered in Python through 3.9.1. The plistlib module no longer accepts entity declarations in XML plist files to avoid XML vulnerabilities. ... An issue in Python cpython v.3.7 allows an attacker to obtain sensitive information via the _asyncio._swap_current_task component. NOTE: this is disputed by the vendor because (1) neither 3.7 nor any other release is affected (it is a bug in some 3.12 pre-releases); (2) there are no common scenarios in which an adversary can call _asyncio._swap_current_task but does not already have the ability to call arbitrary functions; and (3) there are no common scenarios in which sensitive information, which is not already accessible to an adversary, becomes accessible through this bug.
🌐
Medium
medium.com › @maninder.bindra › vulnerability-analysis-of-python-base-container-images-for-a-flask-gunicorn-application-e7e45176cf4b
Vulnerability analysis of python base container images for a flask/gunicorn application | by Maninderjit (Mani) Bindra | Medium
April 18, 2025 - As we can see from the trivy output below this image has over a 1000 vulnerabilities including over a 100 high severity or critical vulnerabilities · $ trivy -q image pyapp3-12:0.1 | grep "Total:" | head -1  ✔  0.07s Total: 1441 (UNKNOWN: 87, LOW: 695, MEDIUM: 548, HIGH: 106, CRITICAL: 5) Next, we try the slimmer variant python:3.12-slim base image from dockerhub.
🌐
CVE Details
cvedetails.com › version › 2065835 › Python-Python-3.12.10.html
Python Python 3.12.10 security vulnerabilities, CVEs
This page lists vulnerability statistics for CVEs published in the last ten years, if any, for Python » Python » 3.12.10 .
🌐
Cybersecurity Help
cybersecurity-help.cz › vdb › soft › python_org › python › 3.12.8
Known vulnerabilities in Python.org Python 3.12.8
3.15.0a6 3.13.12 3.14.3 3.15.0a5 3.15.0a4 3.15.0a3 3.14.2 3.13.11 3.14.1 3.13.10 3.15.0a2 3.9 3.9.25 3.15.0a1 3.13.9 3.11.14 3.10.19 3.9.24 3.12.12 3.13.8 3.14.0rc3 3.14.0rc2 3.13.7 3.13.6 3.14.0rc1 3.14.0b4 3.14.0 3.14.0b3 3.13.5 3.13.4 3.12.11 3.11.13 3.9.23 3.10.18 3.14.0b2 3.14.0b1 3.14.0a7 3.13.3 3.12.10 3.11.12 3.9.22 3.10.17 3.14.0a6 3.14.0a5 3.14.0a4 3.14.0a3 3.14.0a2 3.14.0a1 3.13.0rc3 3.13.0rc2 3.13.0rc1 3.13.0b4 3.13.0b3 3.13.0b2 3.13.0b1 3.13.0a6 3.13.0a5 3.13.0a4 3.13.0a3 3.13.0a2 3.13.0a1 3.12.0rc3 3.12.0rc2 3.12.0rc1 3.12.0b4 3.12.0b3 3.12.0b2 3.12.0b1 3.12.0a7 3.12.0a6 3.12.0a5
🌐
Sliplane
sliplane.io › tools › cve › library › python:3.12.0
Known Vulnerabilities (CVE) in library/python:3.12.0 | Sliplane.io
Docker Image Scan Results. All known vulnerabilities in library/python:3.12.0. Docker Image vulnerability scanner.
🌐
GitHub
github.com › bitnami › containers › issues › 72409
[bitnami/python] : Vulnerability findings in Python 3.10, 3.11 & 3.12 · Issue #72409 · bitnami/containers
September 13, 2024 - [bitnami/python] : Vulnerability findings in Python 3.10, 3.11 & 3.12#72409 · Copy link · Assignees ·
Author   msachinraj
🌐
Cybersecurity Help
cybersecurity-help.cz › vdb › python_org › python › 3.11.2
Known Vulnerabilities in Python 3.11.2
Multiple vulnerabilities in Oracle Communications Diameter Signaling Router22 Oct, 2025 High Patched · Improper input validation in Python zipfile module14 Oct, 2025 Medium Patched