All 5 CVE vulnerabilities found in html-sanitizer, with AI-generated Chinese analysis, references, and POCs.
Vendor: TYPO3
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2024-34078 | html-sanitizer allows arbitrary HTML present after sanitization because of unicode normalization CWE-79 | 6.1 | Medium | 2024-05-06 |
| CVE-2023-47125 | By-passing Cross-Site Scripting Protection in HTML Sanitizer CWE-79 | 4.7 | Medium | 2023-11-14 |
| CVE-2023-38500 | By-passing Cross-Site Scripting Protection in HTML Sanitizer CWE-79 | 4.7 | Medium | 2023-07-25 |
| CVE-2022-23499 | Cross-Site Scripting Protection bypass in HTML Sanitizer CWE-79 | 6.1 | Medium | 2022-12-13 |
| CVE-2022-36020 | Bypass of Cross-Site Scripting Protection in typo3/html-sanitizer CWE-79 | 6.1 | Medium | 2022-09-13 |
All 5 known CVE vulnerabilities affecting html-sanitizer with full Chinese analysis, references, and POCs where available.