Описание
Policies not properly enforced in OWASP Java HTML Sanitizer
The OWASP Java HTML Sanitizer before 20211018.1 does not properly enforce policies associated with the SELECT, STYLE, and OPTION elements.
Пакеты
Наименование
com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer
maven
Затронутые версииВерсия исправления
< 20211018.1
20211018.1
Связанные уязвимости
CVSS3: 9.8
redhat
больше 4 лет назад
The OWASP Java HTML Sanitizer before 20211018.1 does not properly enforce policies associated with the SELECT, STYLE, and OPTION elements.
CVSS3: 9.8
nvd
больше 4 лет назад
The OWASP Java HTML Sanitizer before 20211018.1 does not properly enforce policies associated with the SELECT, STYLE, and OPTION elements.