Release date:
2026-09-03 08:29:45 UTC
Description:
- CVE-2026-13346: pip Link.filename double percent-decode allows path traversal via crafted package URL
Updated packages:
-
alt-python311-pip-21.3.1-6.el10.noarch.rpm
sha:6a1cc0e87d00d753c01beaf183c6607d93d2160f2c1f559d3483abbe974c01e7
-
alt-python311-pip-wheel-21.3.1-6.el10.noarch.rpm
sha:3d458d84b7f1308cc0009382a03e7d8058a3879c3a7aa1bd1a3502da9298f066
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.