DailyCVE@dailycveDisclosure
The post announces CVE‑2026‑28350 as a Medium‑sourced URL hijacking flaw in lxml_html_clean, with no further exploit, patch, or mitigation details.
Vulmon Vulnerability Feed@VulmonFeedsGeneral
A brief alert referencing CVE‑2026‑28350, indicating a base tag injection issue in lxml_html_clean, but providing no technical depth or evidence of exploitation or remediation.
CVE@CVEnewDisclosure
The CVE entry indicates that lxml_html_clean versions before 0.4.4 allow the <base> tag to pass through the cleaner, implying a potential vulnerability, but no exploit details or fixes are provided.