rpm package
opensuse/yelp&distro=openSUSE Leap 16.0
pkg:rpm/opensuse/yelp&distro=openSUSE%20Leap%2016.0
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-13601 | Hig | 7.1 | < 42.3-160000.3.1 | 42.3-160000.3.1 | Jun 29, 2026 | A flaw was found in Yelp due to an overly permissive Content Security Policy (CSP) implementation provided by yelp-xsl. A malicious Flatpak application can open crafted help content through the OpenURI portal. By embedding an untrusted CSS stylesheet within a structured SVG docum |
- affected < 42.3-160000.3.1fixed 42.3-160000.3.1
A flaw was found in Yelp due to an overly permissive Content Security Policy (CSP) implementation provided by yelp-xsl. A malicious Flatpak application can open crafted help content through the OpenURI portal. By embedding an untrusted CSS stylesheet within a structured SVG docum