[ubuntu/hirsute-proposed] lxml 4.6.3-1 (Accepted)

Matthias Klose doko at ubuntu.com
Mon Mar 22 20:27:52 UTC 2021


lxml (4.6.3-1) unstable; urgency=high

  * New upstream version.
    - A vulnerability (CVE-2021-28957) was discovered in the HTML Cleaner,
      which allowed JavaScript to pass through. The cleaner now removes the
      HTML5 formaction attribute.

Date: 2021-03-22 16:33:09.148936+00:00
Changed-By: Matthias Klose <doko at ubuntu.com>
https://launchpad.net/ubuntu/+source/lxml/4.6.3-1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Hirsute-changes mailing list