html: properly check namespace in "in body" any other end tag When processing "any other end tag" in the "in body" insertion mode, when searching for a matching start tag, properly check that said tag is in the HTML namespace. Thanks to ensy for reporting this issue. Fixes CVE-2026-42506 Change-Id: Ia05867b3d8f8df69f7e9410a85d126fe0b092875 Reviewed-on: https://go-review.googlesource.com/c/net/+/781700 Auto-Submit: Gopher Robot <gobot@golang.org> TryBot-Bypass: Roland Shoemaker <roland@golang.org> Reviewed-by: Nicholas Husin <husin@google.com> Reviewed-by: Nicholas Husin <nsh@golang.org> Reviewed-by: Neal Patel <nealpatel@google.com>
This repository holds supplementary Go networking packages.
This repository uses Gerrit for code changes. To learn how to submit changes to this repository, see https://go.dev/doc/contribute.
The git repository is https://go.googlesource.com/net.
The main issue tracker for the net repository is located at https://go.dev/issues. Prefix your issue with “x/net:” in the subject line, so it is easy to find.