File _patchinfo of Package patchinfo.36839
<patchinfo incident="36839"> <issue tracker="cve" id="2024-27306"/> <issue tracker="bnc" id="1223098">VUL-0: CVE-2024-27306: python-aiohttp: XSS on index pages for static file handling</issue> <packager>dgarcia</packager> <rating>moderate</rating> <category>security</category> <summary>Security update for python-aiohttp</summary> <description>This update for python-aiohttp fixes the following issues: - CVE-2024-27306: filenames and paths not escaped when generating index pages for static file handling. (bsc#1223098) </description> </patchinfo>