QID 981406
QID 981406: Python (pip) Security Update for feedparser (GHSA-2p78-8hh6-96xc)
Cross-site scripting (XSS) vulnerability in feedparser.py in Universal Feed Parser (aka feedparser or python-feedparser) 5.x before 5.0.1 allows remote attackers to inject arbitrary web script or HTML via malformed XML comments.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-2p78-8hh6-96xc for updates pertaining to this vulnerability.
Vendor References
- GHSA-2p78-8hh6-96xc -
github.com/advisories/GHSA-2p78-8hh6-96xc
CVEs related to QID 981406
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-2p78-8hh6-96xc | feedparser |
|