CVE-2017-14735
25.09.2017, 21:29
OWASP AntiSamy before 1.5.7 allows XSS via HTML5 entities, as demonstrated by use of : to construct a javascript: URL.
| Vendor | Product | Version |
|---|---|---|
| antisamy_project | antisamy | 𝑥 < 1.5.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References