[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4643-1 python-bleach -- python-bleach

ID: oval:org.secpod.oval:def:604791Date: (C)2020-03-23   (M)2023-11-13
Class: PATCHFamily: unix




It was reported that python-bleach, a whitelist-based HTML-sanitizing library, is prone to a mutation XSS vulnerability in bleach.clean when strip=False and "math" or "svg" tags and one or more of the RCDATA tags were whitelisted.

Platform:
Debian 10.x
Product:
python3-bleach
python-bleach
Reference:
DSA-4643-1
CVE-2020-6816
CVE    1
CVE-2020-6816
CPE    2
cpe:/o:debian:debian_linux:10.x
cpe:/a:mozilla:python-bleach

© SecPod Technologies