[ALSA-2026:66203] Important: python3.12-lxml security update
Type:
security
Severity:
important
Release date:
2026-09-10
Description:
Python is an interpreted, interactive, object-oriented programming language, which includes modules, classes, exceptions, very high level dynamic data types and dynamic typing. Python supports interfaces to many system calls and libraries, as well as to various windowing systems. Security Fix(es): * lxml: lxml-html-clean: lxml: URL bypass vulnerability in Cleaner via missing xlink:href (CVE-2026-49825) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 python3.12-lxml-4.9.3-2.el9_8.1.aarch64.rpm d7c5ea84ef1708865722b84cf8591cdcf2de5507a16fc75cddcb17dd3e45f941
ppc64le python3.12-lxml-4.9.3-2.el9_8.1.ppc64le.rpm 68df1d83b03b5d73efdf90690ad9f1b30187460f8be37afabbce1598e46b340c
s390x python3.12-lxml-4.9.3-2.el9_8.1.s390x.rpm bb27fdbd2ee03c458faf2a1166fa0af7180d8d39101d5cd34d1b332930867089
x86_64 python3.12-lxml-4.9.3-2.el9_8.1.x86_64.rpm fe8768ad3f7ed881187daed35cadd3863b45bd0a190cb7ed14eb9d7aac8abe69
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.