—
PYSEC-2016-21
Quick fix
PYSEC-2016-21 — python-docx: upgrade to the fixed version with the command below.
pip install --upgrade 'python-docx>=0.8.6'Details
python-docx before 0.8.6 allows context-dependent attackers to conduct XML External Entity (XXE) attacks via a crafted document.
Are you affected?
Enter the version of the package you're using.