PT-2020-6126 · Lxml+9 · Lxml+9

CVE-2021-28957

·

Publicado

2020-07-19

·

Atualizado

2025-01-14

CVSS v3.1

9.1

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Nome do software vulnerável e versões afetadas
Versões do lxml anteriores à 4.6.3
Descrição
Um invasor remoto poderia explorar essa falha para executar código JS arbitrário em usuários que interajam com HTML sanitizado incorretamente. O problema ocorre quando os argumentos safe attrs only e forms estão desativados na classe Cleaner, permitindo que o atributo formaction contorne o sanitizador.
Recomendações
Para versões anteriores à 4.6.3, atualize para a versão 4.6.3 para resolver o problema. Como solução temporária, considere habilitar os argumentos safe attrs only e forms na classe Cleaner para impedir que o atributo formaction contorne o sanitizador. Restrinja o acesso à classe Cleaner até que o problema seja resolvido.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALSA-2021:4151
ALSA-2021:4158
ALSA-2021:4160
ALSA-2021:4162
ALT-PU-2021-1529
AZL-6808
BDU:2021-03119
CESA-2021_4151
CESA-2021_4158
CESA-2021_4160
CESA-2021_4162
CVE-2021-28957
DLA-2606-1
DSA-4880-1
GHSA-JQ4V-F5Q6-MJQQ
MGASA-2021-0246
OESA-2021-1178
OPENSUSE-SU-2022:0803-1
OPENSUSE-SU-2022_0803-1
OPENSUSE-SU-2022_3836-1
OPENSUSE-SU-2024:11236-1
OPENSUSE-SU-2024:11473-1
OPENSUSE-SU-2025:14647-1
PYSEC-2021-19
RHSA-2021:3254
RHSA-2021:4151
RHSA-2021:4158
RHSA-2021:4160
RHSA-2021:4162
RHSA-2021_4151
RHSA-2021_4158
RHSA-2021_4160
RHSA-2021_4162
RLSA-2021:4151
RLSA-2021:4158
RLSA-2021:4160
RLSA-2021:4162
SUSE-FU-2022:0444-1
SUSE-FU-2022:0445-1
SUSE-SU-2022:0803-1
SUSE-SU-2022:0895-1
SUSE-SU-2022:1536-1
SUSE-SU-2022:1729-1
SUSE-SU-2022:3836-1
SUSE-SU-2022:3934-1
SUSE-SU-2022:3937-1
SUSE-SU-2022_3934-1
SUSE-SU-2022_3937-1
USN-4896-1
USN-4896-2

Produtos afetados

Alt Linux
Almalinux
Astra Linux
Centos
Linuxmint
Red Hat
Rocky Linux
Suse
Ubuntu
Lxml