[issue38243] A reflected XSS in python/Lib/DocXMLRPCServer.py

Dong-hee Na report at bugs.python.org
Wed Sep 25 00:40:29 EDT 2019


Dong-hee Na <donghee.na92 at gmail.com> added the comment:

I've proposed the patch on GitHub which escaping the server_title when the documenter.page is called. (It different point with msg353132.

----------

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue38243>
_______________________________________


More information about the Python-bugs-list mailing list