pandora-analysis/pandora

pandora-analysis/pandora

Releases25
Frequency2 months 3 days
Last Release
Stars280
Pandora is an analysis framework to discover if a file is suspicious and conveniently show the results

CVE History

CVEPublishedCVSS v3CVSS v2
6.5 MEDIUM

workers/extractor.py in Pandora (aka pandora-analysis/pandora) 1.3.0 allows a denial of service when an attacker submits a deeply nested ZIP archive (aka ZIP bomb).