Bleach: URI sanitization allows disallowed URI schemes with Unicode > U+00A0 in output
Modified: 6/16/2026
package
pkg:pypi/bleach
Bleach: URI sanitization allows disallowed URI schemes with Unicode > U+00A0 in output
Modified: 6/16/2026
Bleach linkify(parse_email=True) CPU exhaustion via unbounded email regex scanning
Modified: 6/16/2026
Bleach clean() / Cleaner() fails to sanitize dangerous URI schemes in allowed formaction attributes
Modified: 6/16/2026
Bleach vulnerable to mutation XSS via whitelisted math or svg and raw tag
Modified: 3/13/2026
Bleach URI Scheme Restriction Bypass
Modified: 2/16/2025
XSS in Bleach when noscript and raw tag whitelisted
Modified: 3/13/2026
regular expression denial-of-service (ReDoS) in Bleach
Modified: 3/13/2026
Cross-site scripting in Bleach
Modified: 3/13/2026
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 11/8/2023