CVE-2017-16016
04.06.2018, 19:29
Sanitize-html is a library for scrubbing html input of malicious values. Versions 1.11.1 and below are vulnerable to cross site scripting (XSS) in certain scenarios: If allowed at least one nonTextTags, the result is a potential XSS vulnerability.
| Vendor | Product | Version |
|---|---|---|
| punkave | sanitize-html | 𝑥 ≤ 1.11.1 |
𝑥
= Vulnerable software versions
Debian Releases
References