SUSE-SU-2026:2758-1
Not scored
Security update for python-pip
This update for python-pip fixes the following issues - CVE-2026-3219: pip doesn't reject concatenated ZIP (bsc#1262429). - CVE-2026-6357: pip self-update functionality can import newly installed modules after wheel installation (bsc#1263442).
Exploit probability
Not scored
Published
July 3, 2026
Required by
Not available
Last source change
July 7, 2026
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
Open Source Vulnerabilities
SUSE-SU-2026:2758-1
View original source
This update for python-pip fixes the following issues - CVE-2026-3219: pip doesn't reject concatenated ZIP (bsc#1262429). - CVE-2026-6357: pip self-update functionality can import newly installed modules after wheel installation (bsc#1263442).
05 / REFERENCES