Security News
Oracle Drags Its Feet in the JavaScript Trademark Dispute
Oracle seeks to dismiss fraud claims in the JavaScript trademark dispute, delaying the case and avoiding questions about its right to the name.
A simple rss/atom feed parser
pip install rssfeed
import requests
import rssfeed
feed = rssfeed.parse(requests.get("https://www.solidot.org/index.rss").text)
print(feed)
{
"name": "奇客Solidot–传递最新科技情报",
"lastupdate": 1717423475,
"items": [
{
"title": "中国科学家使用细胞疗法治愈一名患者的糖尿病",
"author": "",
"timestamp": 1717410594,
"url": "https://www.solidot.org/story?sid=78338",
"content": "《南华早报》报道,中国科学家利用细胞疗法成功治愈了一名患者的糖尿病。研究报告发表在《Cell Discovery》期刊 ..."
},
{
"title": "Steam 平台 Linux 玩家四分之三使用 AMD CPU",
"author": "",
"timestamp": 1717404736,
"url": "https://www.solidot.org/story?sid=78337",
"content": "根据 Valve 公布的 Steam 硬件和软件调查,Linux 份额在过去的五月增长了 0.42% 至 2.32%,macOS 增至 1.47% ..."
},
{
"title": "Hugging Face 称黑客窃取了 Spaces 平台的身份验证令牌",
"author": "",
"timestamp": 1717400574,
"url": "https://www.solidot.org/story?sid=78336",
"content": "Hugging Face 官方博客披露黑客窃取了其 Spaces 平台的身份验证令牌。Spaces 是社区用户创建和递交 AI 应用的库 ..."
}
...
]
}
rssfeed does not escape any HTML tags, which mean if you does not check the content and display it somewhere html can be rendered, it may lead to Cross-site scripting attacks.
FAQs
A simple rss/atom feed parser
We found that rssfeed demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Oracle seeks to dismiss fraud claims in the JavaScript trademark dispute, delaying the case and avoiding questions about its right to the name.
Security News
The Linux Foundation is warning open source developers that compliance with global sanctions is mandatory, highlighting legal risks and restrictions on contributions.
Security News
Maven Central now validates Sigstore signatures, making it easier for developers to verify the provenance of Java packages.