← Back

CVE-2026-6019

nvd nist
Published: Apr 22, 2026Modified: Jul 27, 2026

JSON object

Loading...
2.1
Vector
CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:N/AC:L/AT:P/PR:H/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: CNA (Secondary)

Description

http.cookies.Morsel.js_output() returns an inline <script> snippet and only escapes " for JavaScript string context. It does not neutralize the HTML parser-sensitive sequence </script> inside the generated script element. Mitigation base64-encodes the cookie value to disallow escaping using cookie value.

Affected (10)

Products: Python: Python
1 product
Python
Configuration A
10 vulnerable
Vulnerable SoftwareAffected Versions
Python
Before 3.13.14
From 3.14.0 to 3.14.4
Version 3.15.0 alpha1
Version 3.15.0 alpha2
Version 3.15.0 alpha3
Version 3.15.0 alpha4
Version 3.15.0 alpha5
Version 3.15.0 alpha6
Version 3.15.0 alpha7
Version 3.15.0 alpha8

Timeline

No history available yet.