forked from pool/python-lxml
- update to 4.6.3:
* A vulnerability (CVE-2021-28957) was discovered in the HTML Cleaner by Kevin Chung,
which allowed JavaScript to pass through. The cleaner now removes the HTML5
``formaction`` attribute.
OBS-URL: https://build.opensuse.org/package/show/devel:languages:python/python-lxml?expand=0&rev=145
This commit is contained in:
@@ -1,3 +1,11 @@
|
||||
-------------------------------------------------------------------
|
||||
Tue Apr 6 01:51:29 UTC 2021 - Dirk Müller <dmueller@suse.com>
|
||||
|
||||
- update to 4.6.3:
|
||||
* A vulnerability (CVE-2021-28957) was discovered in the HTML Cleaner by Kevin Chung,
|
||||
which allowed JavaScript to pass through. The cleaner now removes the HTML5
|
||||
``formaction`` attribute.
|
||||
|
||||
-------------------------------------------------------------------
|
||||
Sun Jan 24 10:21:16 UTC 2021 - Dirk Müller <dmueller@suse.com>
|
||||
|
||||
|
||||
Reference in New Issue
Block a user