Release date:
2026-09-11 15:07:59 UTC
Description:
- CVE-2026-13346: pip Link.filename double percent-decode allows path traversal via crafted package URL
Updated packages:
-
alt-python39-pip-21.3.1-5.el7.noarch.rpm
sha:225cb858d6e9b78b4279433ef0562529be273eda177fc96e1113aeec821c6055
-
alt-python39-pip-wheel-21.3.1-5.el7.noarch.rpm
sha:9f56f964d8bf4a3d157befbcd503e48dbf0852e652ec87ba33b906ac4cea5629
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.