This update for python-Pillow fixes the following issue:
- CVE-2026-40192: Versions 10.3.0 through 12.1.1 did not limit the amount of GZIP-compressed data read when decoding a
FITS image, making them vulnerable to decompression bomb attacks (bsc#1262184).