VYPR

PyPI package

pyasn1

pkg:pypi/pyasn1

Vulnerabilities (2)

  • CVE-2026-30922HigMar 18, 2026
    affected < 0.6.3fixed 0.6.3

    pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.3, the `pyasn1` library is vulnerable to a Denial of Service (DoS) attack caused by uncontrolled recursion when decoding ASN.1 data with deeply nested structures. An attacker can supply a crafted payload containing thousa

  • CVE-2026-23490Jan 16, 2026
    affected >= 0.6.1, < 0.6.2fixed 0.6.2

    pyasn1 is a generic ASN.1 library for Python. Prior to 0.6.2, a Denial-of-Service issue has been found that leads to memory exhaustion from malformed RELATIVE-OID with excessive continuation octets. This vulnerability is fixed in 0.6.2.