[ALSA-2026:67943] Important: python-lxml security update
Type:
security
Severity:
important
Release date:
2026-09-16
Description:
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * lxml: lxml-html-clean: lxml: URL bypass vulnerability in Cleaner via missing xlink:href (CVE-2026-49825) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 python3-lxml-4.2.3-5.el8_10.aarch64.rpm 374ea83dfa8f68761f59a01727710e9a801715db78946847baeab6adad286ecb
ppc64le python3-lxml-4.2.3-5.el8_10.ppc64le.rpm af36c723ce04ff5d2fec0449e5cb4368a503be508643807e7d680e904975ba97
s390x python3-lxml-4.2.3-5.el8_10.s390x.rpm 3b755f9352bacb9ebc008f7a5fe1de9d993857f1daf380e6d6057b8cb46d4e74
x86_64 python3-lxml-4.2.3-5.el8_10.x86_64.rpm 2adcec419b49607b0fb4b842312bf869ca03abbab64b4a0a75e869704831bdde
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.