Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 60

Количество 60

suse-cvrf логотип

openSUSE-SU-2021:0270-1

больше 5 лет назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0529-1

больше 5 лет назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0432-1

больше 5 лет назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0428-1

больше 5 лет назад

Security update for python36

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0355-1

больше 5 лет назад

Security update for python

EPSS: Низкий
ubuntu логотип

CVE-2020-27783

больше 5 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2020-27783

почти 6 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2020-27783

больше 5 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2020-27783

около 5 лет назад

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2020-27783

больше 5 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2020-26116

почти 6 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
EPSS: Низкий
redhat логотип

CVE-2020-26116

больше 6 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-26116

почти 6 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
EPSS: Низкий
msrc логотип

CVE-2020-26116

больше 5 лет назад

http.client in Python 3.x before 3.5.10 3.6.x before 3.6.12 3.7.x before 3.7.9 and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2020-26116

почти 6 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x be ...

CVSS3: 7.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3461-1

почти 4 года назад

Security update for python3-lxml

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3460-1

почти 4 года назад

Security update for python3-lxml

EPSS: Низкий
rocky логотип

RLSA-2021:1898

около 5 лет назад

Moderate: python-lxml security update

EPSS: Низкий
github логотип

GHSA-pgww-xf46-h92r

больше 5 лет назад

lxml vulnerable to Cross-site Scripting

CVSS3: 6.1
EPSS: Низкий
oracle-oval логотип

ELSA-2021-1898

около 5 лет назад

ELSA-2021-1898: python-lxml security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
openSUSE-SU-2021:0270-1

Security update for python

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0529-1

Security update for python3

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0432-1

Security update for python

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0428-1

Security update for python36

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0355-1

Security update for python

больше 5 лет назад
ubuntu логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
4%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
4%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
4%
Низкий
больше 5 лет назад
msrc логотип
CVSS3: 6.1
4%
Низкий
около 5 лет назад
debian логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The ...

CVSS3: 6.1
4%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
6%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 6.5
6%
Низкий
больше 6 лет назад
nvd логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
6%
Низкий
почти 6 лет назад
msrc логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10 3.6.x before 3.6.12 3.7.x before 3.7.9 and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
6%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x be ...

CVSS3: 7.2
6%
Низкий
почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2022:3461-1

Security update for python3-lxml

4%
Низкий
почти 4 года назад
suse-cvrf логотип
SUSE-SU-2022:3460-1

Security update for python3-lxml

4%
Низкий
почти 4 года назад
rocky логотип
RLSA-2021:1898

Moderate: python-lxml security update

4%
Низкий
около 5 лет назад
github логотип
GHSA-pgww-xf46-h92r

lxml vulnerable to Cross-site Scripting

CVSS3: 6.1
4%
Низкий
больше 5 лет назад
oracle-oval логотип
ELSA-2021-1898

ELSA-2021-1898: python-lxml security update (MODERATE)

около 5 лет назад

Уязвимостей на страницу