CVE-2021-27671
25.02.2021, 01:15
An issue was discovered in the comrak crate before 0.9.1 for Rust. XSS can occur because the protection mechanism for data: and javascript: URIs is case-sensitive, allowing (for example) Data: to be used in an attack.
Vendor | Product | Version |
---|---|---|
comrak_project | comrak | 𝑥 < 0.9.1 |
𝑥
= Vulnerable software versions