[Forgot Password]
Login  Register Subscribe

25354

 
 

132805

 
 

141116

 
 

909

 
 

114097

 
 

156

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4643-1 python-bleach -- python-bleach

ID: oval:org.secpod.oval:def:604791Date: (C)2020-03-23   (M)2020-03-23
Class: PATCHFamily: unix




It was reported that python-bleach, a whitelist-based HTML-sanitizing library, is prone to a mutation XSS vulnerability in bleach.clean when strip=False and "math" or "svg" tags and one or more of the RCDATA tags were whitelisted.

Platform:
Debian 10.x
Product:
python-bleach
Reference:
DSA-4643-1
CVE-2020-6816

© SecPod Technologies