Safety vulnerability ID: 36332
The information on this page was manually curated by our Cybersecurity Intelligence Team.
mistune before 0.8.1 has a cross-site scripting (XSS) vulnerability in the _keyify function in mistune.py which allows remote attackers to inject arbitrary web script or HTML by leveraging failure to escape the "key" argument.
Latest version: 3.0.2
A sane and fast Markdown parser with useful plugins and renderers
This vulnerability has no description
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application