https://advisories.gitlab.com/pypi/reportlab/CVE-2019-17626/
XML Injection in ReportLab | GitLab Advisory Database (GLAD)
CVE-2019-17626 XML Injection in ReportLab: ReportLab through 3.5.26 allows remote code execution because of toColor(eval(arg)) in colors.py, as demonstrated by...
xml injectionreportlabgitlabadvisorydatabase
https://lwn.net/Articles/810860/
CentOS alert CESA-2020:0195 (python-reportlab) [LWN.net]
centosalertcesapythonreportlab
https://lwn.net/Articles/810355/
Oracle alert ELSA-2020-0195 (python-reportlab) [LWN.net]
oraclealertelsapythonreportlab
https://advisories.gitlab.com/pypi/reportlab/CVE-2023-33733/
Reportlab vulnerable to remote code execution | GitLab Advisory Database (GLAD)
CVE-2023-33733 Reportlab vulnerable to remote code execution: Reportlab up to and including v3.6.12 allows attackers to execute arbitrary code via supplying a...
remote code executionreportlabvulnerablegitlabadvisory
https://lwn.net/Articles/810354/
Oracle alert ELSA-2020-0201 (python-reportlab) [LWN.net]
oraclealertelsapythonreportlab
https://lwn.net/Articles/810861/
CentOS alert CESA-2020:0197 (python-reportlab) [LWN.net]
centosalertcesapythonreportlab