VDB
Sign up
MEDIUM5.6

GHSA-c58j-88f5-h53f

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in pycares

Quick fix

GHSA-c58j-88f5-h53f — pycares: upgrade to the fixed version with the command below.

pip install --upgrade 'pycares>=4.2.0'

Details

### Impact

pycares versions < 4.2.0 are affected by [CVE-2021-3672](https://nvd.nist.gov/vuln/detail/CVE-2021-3672).

### Patches

Update to version 4.2.0.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/pycares
Introduced in: 0Fixed in: 4.2.0
Fixpip install --upgrade 'pycares>=4.2.0'

References