CVE-2026-28348 | fedora-python lxml_html_clean up to 0.4.3 _has_sneaky_javascript escape output (GHSA-hw26-mmpg-fqfg)
A vulnerability labeled as critical has been found in fedora-python lxml_html_clean up to 0.4.3. This affects the function _has_sneaky_javascript. Executing a manipulation can lead to escaping of output.
The identification of this vulnerability is CVE-2026-28348. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.