Vulnerabilities (CVE)

Filtered by vendor Owasp Subscribe
Filtered by product Json-sanitizer
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23899 1 Owasp 1 Json-sanitizer 2021-01-19 7.5 HIGH 9.8 CRITICAL
OWASP json-sanitizer before 1.2.2 may emit closing SCRIPT tags and CDATA section delimiters for crafted input. This allows an attacker to inject arbitrary HTML or XML into embedding documents.