[CLSA-2026:1788954196] alt-python37-pip: Fix of CVE-2026-13346
Type:
security
Severity:
Moderate
Release date:
2026-09-09 11:43:26 UTC
Description:
- CVE-2026-13346: directory escape via Link.filename decoding the URL path twice
CVEs fixed:
Updated packages:
  • alt-python37-pip-20.2.4-9.el10.noarch.rpm
    sha:d25f4ba52b7266bf0e241b05eb122b5fe75692cddd765ba291321a261c0af112
  • alt-python37-pip-wheel-20.2.4-9.el10.noarch.rpm
    sha:29721ea85b69ce84cb631caea555edde60f22f5e66145190d38e89eb5f569f3c
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.