UbuntuUpdates.org

Package "python3-xmltodict"

Name: python3-xmltodict

Description:

Makes working with XML feel like you are working with JSON (Python 3)

Latest version: 0.13.0-1ubuntu0.25.04.1
Release: plucky (25.04)
Level: security
Repository: main
Head package: python-xmltodict
Homepage: https://github.com/martinblech/xmltodict

Links


Download "python3-xmltodict"


Other versions of "python3-xmltodict" in Plucky

Repository Area Version
base main 0.13.0-1
updates main 0.13.0-1ubuntu0.25.04.1

Changelog

Version: 0.13.0-1ubuntu0.25.04.1 2025-09-17 03:07:28 UTC

  python-xmltodict (0.13.0-1ubuntu0.25.04.1) plucky-security; urgency=medium

  * SECURITY UPDATE: XML Injection when inserting XML tags.
    - debian/patches/CVE-2025-9375-*.patch: Add checks for special characters
      in xmltodict.py.
    - CVE-2025-9375

 -- Hlib Korzhynskyy <email address hidden> Mon, 15 Sep 2025 16:03:03 -0230

CVE-2025-9375 XML Injection vulnerability in xmltodict allows Input Data Manipulation. This issue affects xmltodict: from 0.14.2 before 0.15.1.



About   -   Send Feedback to @ubuntu_updates