CVE-2017-16016
04.06.2018, 19:29
Sanitize-html is a library for scrubbing html input of malicious values. Versions 1.11.1 and below are vulnerable to cross site scripting (XSS) in certain scenarios: If allowed at least one nonTextTags, the result is a potential XSS vulnerability.
Vendor | Product | Version |
---|---|---|
punkave | sanitize-html | 𝑥 ≤ 1.11.1 |
𝑥
= Vulnerable software versions

Debian Releases
References