HIGH8.2PyPI
GHSA-55x5-fj6c-h6m8· CVE-2021-43818, PYSEC-2021-852lxml's HTML Cleaner allows crafted and SVG embedded scripts to pass through
Modified: 7/8/2026
package
pkg:pypi/lxml
lxml's HTML Cleaner allows crafted and SVG embedded scripts to pass through
Modified: 7/8/2026
lxml Cross-site Scripting Via Control Characters
Modified: 9/30/2024
lxml vulnerable to Cross-Site Scripting
Modified: 9/30/2024
lxml vulnerable to Cross-site Scripting
Modified: 12/20/2025
lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files
Modified: 9/10/2026
lxml NULL Pointer Dereference allows attackers to cause a denial of service
Modified: 11/4/2025
Improper Neutralization of Input During Web Page Generation in LXML
Modified: 12/20/2025
Modified: 6/10/2026
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 11/8/2023
Modified: 4/9/2026
Modified: 11/8/2023
Modified: 5/20/2026