PT-2026-34549 · Python+3 · Python+3

·

CVE-2026-6019

·

Published

2026-04-22

·

Updated

2026-07-28

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Python (affected versions not specified)
Description The js output() function within http.cookies.Morsel returns an inline <script> snippet that only escapes double quotes for JavaScript string context. It fails to neutralize the </script> sequence, which is sensitive to the HTML parser, allowing for potential escaping within the generated script element.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability. Base64-encode the cookie value to prevent escaping via the cookie value.

Exploit

DoS

Improper Encoding or Escaping of Output

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:28247
ALSA-2026:28581
BIT-LIBPYTHON-2026-6019
BIT-PYTHON-2026-6019
BIT-PYTHON-MIN-2026-6019
CVE-2026-6019
ECHO-1E4C-228C-95EE
OESA-2026-2269
OESA-2026-2270
OESA-2026-2271
OPENSUSE-SU-2026:10647-1
OPENSUSE-SU-2026:10648-1
OPENSUSE-SU-2026:10667-1
OPENSUSE-SU-2026:11068-1
OPENSUSE-SU-2026:11100-1
OPENSUSE-SU-2026:11181-1
OPENSUSE-SU-2026:21459-1
PSF-2026-21
RHSA-2026:22952
RHSA-2026:32980
RHSA-2026:32997
RHSA-2026:33885
SUSE-SU-2026:1715-1
SUSE-SU-2026:1818-1
SUSE-SU-2026:1937-1
SUSE-SU-2026:1947-1
SUSE-SU-2026:2055-1
SUSE-SU-2026:2387-1
SUSE-SU-2026:2464-1
SUSE-SU-2026:2664-1
SUSE-SU-2026:3104-1
SUSE-SU-2026:3132-1
USN-8509-1

Affected Products

Linuxmint
Python
Red Os
Rocky Linux