Actions which insert URLs into the content attribute of HTML meta tags are not escaped
Details
CVE-2026-27142 affects multiple packages. Actions which insert URLs into the content attribute of HTML meta tags are not escaped. See references for individual vulnerability details.