diff options
| author | Markus Heiser <markus.heiser@darmarIT.de> | 2026-04-29 07:11:13 +0200 |
|---|---|---|
| committer | GitHub <noreply@github.com> | 2026-04-29 07:11:13 +0200 |
| commit | f96ac331edb3a1592fc2e37c7dfbee3e92cf1149 (patch) | |
| tree | defcbdbe103a7a67941080fcb5d88cea398a9813 /requirements-server.txt | |
| parent | 616d6f4818229f7a8f38c21b369c0603389c9d70 (diff) | |
[upd] pypi: Bump lxml from 6.0.4 to 6.1.0 (#6036)
Release 6.1.0 fixes a possible external entity injection (XXE) vulnerability in
``iterparse()`` and the ``ETCompatXMLParser``.
https://github.com/lxml/lxml/blob/64ed06c1a0c1833bfac99f209f16c3bdfddfde79/CHANGES.txt#L42-L66
- Closes https://github.com/searxng/searxng/issues/6025
Signed-off-by: Markus Heiser <markus.heiser@darmarit.de>
Diffstat (limited to 'requirements-server.txt')
0 files changed, 0 insertions, 0 deletions
