WhisperX tag archive

#CVE-2024-22195

This page collects WhisperX intelligence signals tagged #CVE-2024-22195. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (1)

The Lab · 2026-04-13 05:22:38 · GitHub Issues

1. Jinja2 Security Update: CVE-2024-22195 Exposes XML Attribute Injection Risk

A critical security vulnerability in the widely-used Jinja2 templating engine has prompted an urgent update. The flaw, tracked as CVE-2024-22195, resides in the `xmlattr` filter, which in affected versions incorrectly accepts keys containing spaces. This creates a direct path for XML or HTML attribute injection, as eac...