Safety vulnerability ID: 26081
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Python-docx 0.8.6 includes a fix for CVE-2016-5851: context-dependent attackers were able to conduct XML External Entity (XXE) attacks via a crafted document.
Latest version: 1.1.2
Create, read, and update Microsoft Word .docx files.
python-docx before 0.8.6 allows context-dependent attackers to conduct XML External Entity (XXE) attacks via a crafted document.
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application