Skip to content

Jinja vulnerable to HTML attribute injection when passing user input as keys to xmlattr filter

Moderate severity GitHub Reviewed Published Jan 10, 2024 in pallets/jinja • Updated Jan 27, 2024

No open alerts for this advisory

Give feedback on Dependabot alerts