Related Vulnerabilities: CVE-2016-9909  

A potential cross site scripting vulnerability was found in python- html5lib due to unquoted attributes that need escaping in legacy browsers.

Severity Low

Remote Yes

Type Cross-site scripting

Description

A potential cross site scripting vulnerability was found in python- html5lib due to unquoted attributes that need escaping in legacy browsers.

AVG-100 python-html5lib, python2-html5lib 0.9999999-2 0.999999999-1 Low Fixed

12 Dec 2016 ASA-201612-13 AVG-100 python-html5lib Low cross-site scripting

12 Dec 2016 ASA-201612-12 AVG-100 python2-html5lib Low cross-site scripting

https://github.com/html5lib/html5lib-python/issues/11