CVE-2020-27619: Fedoraproject Fedora
Critical severity, CVSS 9.8. EPSS: 8.3% chance of exploitation in the next 30 days.
In Python 3 through 3.9.0, the Lib/test/multibytecodec_support.py CJK codec tests call eval() on content retrieved via HTTP.
Affected products
- Fedoraproject Fedora: version 33 only; version 34 only
- Oracle Communications Cloud Native Core Network Function Cloud Native Environment: version 22.2.0 only
- Python Python: from 3.0.0, before 3.6.13 (fixed in 3.6.13); from 3.7.0, before 3.7.10 (fixed in 3.7.10); from 3.8.0, before 3.8.7 (fixed in 3.8.7); from 3.9.0, before 3.9.1 (fixed in 3.9.1)
Published 2020-10-22. Last modified 2026-10-08.