VYPR

rpm package

opensuse/python-lxml_html_clean&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/python-lxml_html_clean&distro=openSUSE%20Tumbleweed

Vulnerabilities (2)

  • CVE-2026-28350Mar 5, 2026
    affected < 0.4.4-1.1fixed 0.4.4-1.1

    lxml_html_clean is a project for HTML cleaning functionalities copied from `lxml.html.clean`. Prior to version 0.4.4, the tag passes through the default Cleaner configuration. While page_structure=True removes html, head, and title tags, there is no specific handling for <

  • CVE-2026-28348Mar 5, 2026
    affected < 0.4.4-1.1fixed 0.4.4-1.1

    lxml_html_clean is a project for HTML cleaning functionalities copied from `lxml.html.clean`. Prior to version 0.4.4, the _has_sneaky_javascript() method strips backslashes before checking for dangerous CSS keywords. This causes CSS Unicode escape sequences to bypass the @import