Multiple vulnerabilities has been found and corrected in python-feedparser: Cross-site scripting vulnerability in feedparser.py in Universal Feed Parser before 5.0 allows remote attackers to inject arbitrary web script or HTML via vectors involving nested CDATA stanzas . feedparser.py in Universal Feed Parser before 5.0.1 allows remote attackers to cause a denial of service via a malformed DOC ...