Robuta

https://advisories.gitlab.com/pypi/reportlab/CVE-2019-17626/ XML Injection in ReportLab | GitLab Advisory Database (GLAD) CVE-2019-17626 XML Injection in ReportLab: ReportLab through 3.5.26 allows remote code execution because of toColor(eval(arg)) in colors.py, as demonstrated by... xml injectionreportlabgitlabadvisorydatabase https://lwn.net/Articles/810860/ CentOS alert CESA-2020:0195 (python-reportlab) [LWN.net] centosalertcesapythonreportlab https://lwn.net/Articles/810355/ Oracle alert ELSA-2020-0195 (python-reportlab) [LWN.net] oraclealertelsapythonreportlab https://advisories.gitlab.com/pypi/reportlab/CVE-2023-33733/ Reportlab vulnerable to remote code execution | GitLab Advisory Database (GLAD) CVE-2023-33733 Reportlab vulnerable to remote code execution: Reportlab up to and including v3.6.12 allows attackers to execute arbitrary code via supplying a... remote code executionreportlabvulnerablegitlabadvisory https://lwn.net/Articles/810354/ Oracle alert ELSA-2020-0201 (python-reportlab) [LWN.net] oraclealertelsapythonreportlab https://lwn.net/Articles/810861/ CentOS alert CESA-2020:0197 (python-reportlab) [LWN.net] centosalertcesapythonreportlab