Reflected cross-site scripting (XSS) In pypy3

Description

http.cookies.Morsel.js_output() returns an inline inside the generated script element. Mitigation base64-encodes the cookie value to disallow escaping using cookie value.

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Package
Affected version
Patched versions

1-10 of 23

10

FLAT-5GAQW – Vulnerability | Fluid Attacks Database