PT-2026-56513 · Pypi · Mistune
CVSS v3.1
4.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Mistune versions prior to 3.3.0
Description
The
toc plugin and TableOfContents directive generate heading IDs using predictable toc N values instead of slugifying the heading text. This allows attacker-controlled content with id="toc N" to collide with generated anchors, which can redirect same-page navigation, CSS selectors, or JavaScript handlers.Recommendations
Update to version 3.3.0.
Exploit
Fix
Insufficient Verification of Data Authenticity
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mistune