[issue42967] [CVE-2021-23336] urllib.parse.parse_qsl(): Web cache poisoning - `; ` as a query args separator

Éric Araujo report at bugs.python.org
Thu Nov 4 10:47:40 EDT 2021


Éric Araujo <merwok at netwok.org> added the comment:

erlandaasland you’ve been editing closed issues today (got messages from at least 2).  maybe submitting old browser tabs with obsolete form data?

----------
nosy: +erlendaasland

_______________________________________
Python tracker <report at bugs.python.org>
<https://bugs.python.org/issue42967>
_______________________________________


More information about the Python-bugs-list mailing list