Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Bleach 2.1.x before 2.1.3. Attributes that have URI values weren't properly sanitized if the values contained character entities. Using character entities, it was possible to construct a URI value with a scheme that was not allowed that would slide through unsanitized.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Bleach 安全漏洞
Vulnerability Description
Bleach是一个用于去除标记和属性的HTML清理库。 Bleach 2.1.3之前的2.1.x版本中存在安全漏洞,该漏洞源于程序没有正确的过滤带有URI值的属性。目前尚无此漏洞的相关信息,请随时关注CNNVD或厂商公告。
CVSS Information
N/A
Vulnerability Type
N/A