VDB

GCVE-VVD-MAGEIA-2018-66

GCVE-VVD-MAGEIA-2018-66
Advisory Published
Vulnetix · Advisory published May 9, 2018
mistune.py in Mistune 0.7.4 allows XSS via an unexpected newline (such as in java\nscript:) or a crafted email address, related to the escape and autolink functions (CVE-2017-15612). A cross-site-scripting vulnerability was found in python-mistune (CVE-2017-16876).

Affected Products

VendorProductVersionsPlatforms
Mageiapython-mistune0 (affected), 0.7.2-1.1.mga6 (unaffected), 0 (affected), 0.7.2-1.1.mga6 (unaffected)
Mageiawireless-regdb0 (affected), 20171223-1.mga6 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›