HIGH7.5CVE-2026-41066lxml: Default configuration of iterparse() and ETCompatXMLParser() allows XXE to local files from 0
from 0, < 3.3.5-1
from 0, < 2.2.8-2+deb6u1
from 0, < 2.3.2-1+deb7u1
MEDIUM6.1lxml - security update
from 0, < 4.2.5-1
MEDIUM6.1lxml - security update
from 0, < 3.7.1-1+deb9u1
MEDIUM6.1lxml - security update
from 0, < 4.6.3-1
MEDIUM6.1lxml - security update
from 0, < 3.7.1-1+deb9u4
MEDIUM6.1lxml - security update
from 0, < 4.3.2-1+deb10u3
MEDIUM6.1lxml - security update
from 0, < 4.6.2-1
MEDIUM6.1lxml - security update
from 0, < 4.3.2-1+deb10u1
MEDIUM5.3lxml NULL Pointer Dereference allows attackers to cause a denial of service
from 0