PT-2026-46108 · Unknown · Template-Toolkit

Published

2026-06-03

·

Updated

2026-06-03

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Template-Toolkit (affected versions not specified)
Description The html filter() function of Template::Plugin::HTML fails to properly escape single quotes. This allows an attacker to inject arbitrary HTML and JavaScript into the generated output.
Recommendations Update the libtemplate-perl package to version 2.27-1ubuntu0.24.04.1.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

USN-8377-1

Affected Products

Template-Toolkit