icon

We found results for “

CVE-2021-35043

Good to know:

icon
icon
icon

Date: July 19, 2021

OWASP AntiSamy before 1.6.4 allows XSS via HTML attributes when using the HTML output serializer (XHTML is not affected). This was demonstrated by a javascript: URL with &#00058 as the replacement for the : character.

Language: Java

Severity Score

Severity Score

Top Fix

icon

Upgrade Version

Upgrade to version org.owasp.antisamy:antisamy:1.6.4

Learn More

CVSS v3.1

Base Score:
Attack Vector (AV):
Attack Complexity (AC):
Privilegs Required (PR):
User Interaction (UI):
Scope (S):
Confidentiality (C):
Integrity (I):
Availability (A):

Do you need more information?

Contact Us