[docs] [issue26398] cgi.escape() Can Lead To XSS and HTML Vulnerabilities

Dhiraj report at bugs.python.org
Tue Feb 23 08:06:53 EST 2016


Dhiraj added the comment:

Even the IDLE of Python is Vulnerable to CGI.ESCAPE() Please have a look on attachments , I hope this would be Patch Soon.

Thank You

----------
nosy: +dstufft, gregory.p.smith
type:  -> security
Added file: http://bugs.python.org/file42013/Python-IDLE-CGI-Vulnerable.png

_______________________________________
Python tracker <report at bugs.python.org>
<http://bugs.python.org/issue26398>
_______________________________________


More information about the docs mailing list