> USN-8524-1: Python vulnerability
[DATE: 09/07/2026 15:11]
[LANGUAGE: EN]
It was discovered that Python did not use sufficient entropy for Expat
hash-flooding protection in the xml.parsers.expat and xml.etree.ElementTree
modules. An attacker could use this to cause a denial of service via a
crafted XML document.