[CLSA-2026:1788424175] alt-python311-pip: Fix of CVE-2026-13346
Type:
security
Severity:
Moderate
Release date:
2026-09-03 08:29:45 UTC
Description:
- CVE-2026-13346: pip Link.filename double percent-decode allows path traversal via crafted package URL
CVEs fixed:
Updated packages:
  • alt-python311-pip-21.3.1-6.el10.noarch.rpm
    sha:6a1cc0e87d00d753c01beaf183c6607d93d2160f2c1f559d3483abbe974c01e7
  • alt-python311-pip-wheel-21.3.1-6.el10.noarch.rpm
    sha:3d458d84b7f1308cc0009382a03e7d8058a3879c3a7aa1bd1a3502da9298f066
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.