You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
On 2023-01-23, the Bleach package used for sanitizing HTML was deprecated. The nh3 package is best alternative in my opinion. flask-security still uses bleach with its "common" set of packages. Please change this as soon as possible, otherwise this is counted as security issue.
The text was updated successfully, but these errors were encountered:
Thanks for the issue - nh3 looks interesting. While bleach is 'deprecated' it is still being supported. Are you aware of any security reports against it?
On 2023-01-23, the Bleach package used for sanitizing HTML was deprecated. The nh3 package is best alternative in my opinion. flask-security still uses bleach with its "common" set of packages. Please change this as soon as possible, otherwise this is counted as security issue.
The text was updated successfully, but these errors were encountered: