MEDIUM
mixxorz
CVE published 2026-03-31
CVE-2026-34231
CVE-2026-34231 is a Cross-Site Scripting (XSS) vulnerability in the {% attrs %} template tag of the Slippers Django package. The vulnerability allows an attacker to inject arbitrary HTML or JavaScript into the rendered page when a context variable containing untrusted data is passed to {% attrs %}. The issue has been patched in version 0.6.3. Developers and administrators using the Slippers UI component f [truncated]