OSV 1.4.0 · github-reviewed · 修改于 2021-04-07 05:44
发布时间
2021-06-17 01:34
GitHub 审查时间
2021-04-07 05:44
NVD 发布时间
2021-01-14 00:15
源文件
advisories/github-reviewed/2021/06/GHSA-mm8j-9x84-m9cv/GHSA-mm8j-9x84-m9cv.json
OWASP json-sanitizer before 1.2.2 may emit closing SCRIPT tags and CDATA section delimiters for crafted input. This allows an attacker to inject arbitrary HTML or XML into embedding documents.