Lack of data validation - Path Traversal In pillow

Description

Pillow before 9.0.1 allows attackers to delete files because spaces in temporary pathnames are mishandled.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions