CVE-2026-11972

ADVISORY - nist

Summary

When using the "tarfile" module with a file opened in "streaming mode" (mode="r|") the tarfile module did not properly handle EOF, making archive parsing take exponentially longer.

EPSS Score: 0.00445 (0.366)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Unchecked Return Value

Unchecked Input for Loop Condition

Allocation of Resources Without Limits or Throttling


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in