Количество 9
Количество 9
CVE-2025-9375
XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 before 0.15.1. NOTE: the scope of this CVE is disputed by the vendor on the grounds that xmltodict.unparse() delegates element-name handling to Python's xml.sax.saxutils.XMLGenerator, and that XMLGenerator should be the component performing validation.
CVE-2025-9375
XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 before 0.15.1. NOTE: the scope of this CVE is disputed by the vendor on the grounds that xmltodict.unparse() delegates element-name handling to Python's xml.sax.saxutils.XMLGenerator, and that XMLGenerator should be the component performing validation.
CVE-2025-9375
XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 before 0.15.1. NOTE: the scope of this CVE is disputed by the vendor on the grounds that xmltodict.unparse() delegates element-name handling to Python's xml.sax.saxutils.XMLGenerator, and that XMLGenerator should be the component performing validation.
CVE-2025-9375
XML Injection vulnerability in xmltodict allows Input Data Manipulatio ...
SUSE-SU-2025:03511-1
Security update for python-xmltodict
SUSE-SU-2025:03457-1
Security update for python-xmltodict
GHSA-rqvm-6hhw-247j
XML Injection vulnerability in xmltodict allows Input Data Manipulation.This issue affects xmltodict: 0.14.2.
BDU:2026-03621
Уязвимость библиотеки для работы с XML в Python python-xmltodict, связанная с ошибками в обработке xml-запросов, позволяющая нарушителю выполнить произвольный код
ROS-20260209-73-0010
Уязвимость python-xmltodict
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-9375 XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 before 0.15.1. NOTE: the scope of this CVE is disputed by the vendor on the grounds that xmltodict.unparse() delegates element-name handling to Python's xml.sax.saxutils.XMLGenerator, and that XMLGenerator should be the component performing validation. | 0% Низкий | 12 месяцев назад | ||
CVE-2025-9375 XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 before 0.15.1. NOTE: the scope of this CVE is disputed by the vendor on the grounds that xmltodict.unparse() delegates element-name handling to Python's xml.sax.saxutils.XMLGenerator, and that XMLGenerator should be the component performing validation. | CVSS3: 5.3 | 0% Низкий | 12 месяцев назад | |
CVE-2025-9375 XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 before 0.15.1. NOTE: the scope of this CVE is disputed by the vendor on the grounds that xmltodict.unparse() delegates element-name handling to Python's xml.sax.saxutils.XMLGenerator, and that XMLGenerator should be the component performing validation. | 0% Низкий | 12 месяцев назад | ||
CVE-2025-9375 XML Injection vulnerability in xmltodict allows Input Data Manipulatio ... | 0% Низкий | 12 месяцев назад | ||
SUSE-SU-2025:03511-1 Security update for python-xmltodict | 0% Низкий | 10 месяцев назад | ||
SUSE-SU-2025:03457-1 Security update for python-xmltodict | 0% Низкий | 10 месяцев назад | ||
GHSA-rqvm-6hhw-247j XML Injection vulnerability in xmltodict allows Input Data Manipulation.This issue affects xmltodict: 0.14.2. | 0% Низкий | 12 месяцев назад | ||
BDU:2026-03621 Уязвимость библиотеки для работы с XML в Python python-xmltodict, связанная с ошибками в обработке xml-запросов, позволяющая нарушителю выполнить произвольный код | CVSS3: 5.3 | 0% Низкий | 12 месяцев назад | |
ROS-20260209-73-0010 Уязвимость python-xmltodict | CVSS3: 5.3 | 0% Низкий | 6 месяцев назад |
Уязвимостей на страницу