<package> <name>python313-defusedxml</name> <short>Python 3.13 - defusedxml - XML bomb protection</short> <version>3.6.0</version> <date>2025-04-08</date> <system>eisfair-noarch</system> <author>the eisfair team, team(at)eisfair(dot)org</author> <status>stable</status> <section>python3</section> <require-package>python313-base 3.6.0</require-package> <description> Internal Program Version: defusedxml 0.7.1 The results of an attack on a vulnerable XML library can be fairly dramatic. With just a few hundred bytes of XML data an attacker can occupy several gigabytes of memory within seconds. An attacker can also keep CPUs busy for a long time with a small to medium size request. This library allows for XML to be parsed in a manner that avoids these pitfalls. https://pypi.python.org/pypi/defusedxml </description> </package>