Логотип exploitDog
bind:"CVE-2021-3177" OR bind:"CVE-2020-26116" OR bind:"CVE-2020-27783"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2021-3177" OR bind:"CVE-2020-26116" OR bind:"CVE-2020-27783"

Количество 60

Количество 60

suse-cvrf логотип

openSUSE-SU-2021:0270-1

почти 5 лет назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0529-1

почти 5 лет назад

Security update for python3

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0432-1

почти 5 лет назад

Security update for python

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0428-1

почти 5 лет назад

Security update for python36

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:0355-1

почти 5 лет назад

Security update for python

EPSS: Низкий
ubuntu логотип

CVE-2020-27783

около 5 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2020-27783

больше 5 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2020-27783

около 5 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
EPSS: Низкий
msrc логотип

CVE-2020-27783

больше 4 лет назад

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2020-27783

около 5 лет назад

A XSS vulnerability was discovered in python-lxml's clean module. The ...

CVSS3: 6.1
EPSS: Низкий
ubuntu логотип

CVE-2020-26116

больше 5 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
EPSS: Низкий
redhat логотип

CVE-2020-26116

почти 6 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-26116

больше 5 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
EPSS: Низкий
msrc логотип

CVE-2020-26116

около 5 лет назад

http.client in Python 3.x before 3.5.10 3.6.x before 3.6.12 3.7.x before 3.7.9 and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
EPSS: Низкий
debian логотип

CVE-2020-26116

больше 5 лет назад

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x be ...

CVSS3: 7.2
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3461-1

больше 3 лет назад

Security update for python3-lxml

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2022:3460-1

больше 3 лет назад

Security update for python3-lxml

EPSS: Низкий
rocky логотип

RLSA-2021:1898

больше 4 лет назад

Moderate: python-lxml security update

EPSS: Низкий
github логотип

GHSA-pgww-xf46-h92r

около 5 лет назад

lxml vulnerable to Cross-site Scripting

CVSS3: 6.1
EPSS: Низкий
oracle-oval логотип

ELSA-2021-1898

больше 4 лет назад

ELSA-2021-1898: python-lxml security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
openSUSE-SU-2021:0270-1

Security update for python

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0529-1

Security update for python3

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0432-1

Security update for python

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0428-1

Security update for python36

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:0355-1

Security update for python

почти 5 лет назад
ubuntu логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
redhat логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A remote attacker could exploit this flaw to run arbitrary HTML/JS code.

CVSS3: 6.1
1%
Низкий
около 5 лет назад
msrc логотип
CVSS3: 6.1
1%
Низкий
больше 4 лет назад
debian логотип
CVE-2020-27783

A XSS vulnerability was discovered in python-lxml's clean module. The ...

CVSS3: 6.1
1%
Низкий
около 5 лет назад
ubuntu логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 6.5
2%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x before 3.7.9, and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method, as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
msrc логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10 3.6.x before 3.6.12 3.7.x before 3.7.9 and 3.8.x before 3.8.5 allows CRLF injection if the attacker controls the HTTP request method as demonstrated by inserting CR and LF control characters in the first argument of HTTPConnection.request.

CVSS3: 7.2
2%
Низкий
около 5 лет назад
debian логотип
CVE-2020-26116

http.client in Python 3.x before 3.5.10, 3.6.x before 3.6.12, 3.7.x be ...

CVSS3: 7.2
2%
Низкий
больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2022:3461-1

Security update for python3-lxml

1%
Низкий
больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2022:3460-1

Security update for python3-lxml

1%
Низкий
больше 3 лет назад
rocky логотип
RLSA-2021:1898

Moderate: python-lxml security update

1%
Низкий
больше 4 лет назад
github логотип
GHSA-pgww-xf46-h92r

lxml vulnerable to Cross-site Scripting

CVSS3: 6.1
1%
Низкий
около 5 лет назад
oracle-oval логотип
ELSA-2021-1898

ELSA-2021-1898: python-lxml security update (MODERATE)

больше 4 лет назад

Уязвимостей на страницу