CVE-2021-42575
18.10.2021, 15:15
The OWASP Java HTML Sanitizer before 20211018.1 does not properly enforce policies associated with the SELECT, STYLE, and OPTION elements.Enginsight
Vendor | Product | Version |
---|---|---|
owasp | java_html_sanitizer | 𝑥 < 20211018.2 |
oracle | middleware_common_libraries_and_tools | 12.2.1.3.0 |
oracle | middleware_common_libraries_and_tools | 12.2.1.4.0 |
oracle | primavera_unifier | 17.7 ≤ 𝑥 ≤ 17.12 |
oracle | primavera_unifier | 18.8 |
oracle | primavera_unifier | 19.12 |
oracle | primavera_unifier | 20.12 |
oracle | primavera_unifier | 21.12 |
𝑥
= Vulnerable software versions
References