CVE-2017-12852: Numpy
High severity, CVSS 7.5. EPSS: 2.7% chance of exploitation in the next 30 days.
The numpy.pad function in Numpy 1.13.1 and older versions is missing input validation. An empty list or ndarray will stick into an infinite loop, which can allow attackers to cause a DoS attack.
Affected products
- Numpy Numpy: up to and including 1.13.1
Published 2017-08-15. Last modified 2026-06-17.