Lucene search

K
osvGoogleOSV:GHSA-WMWP-PGGC-H4MJ
HistoryMay 18, 2021 - 3:30 p.m.

Cross-site Scripting in Documize

2021-05-1815:30:30
Google
osv.dev
7

0.001 Low

EPSS

Percentile

30.8%

domain/section/markdown/markdown.go in Documize before 3.5.1 mishandles untrusted Markdown content. This was addressed by adding the bluemonday HTML sanitizer to defend against XSS.

CPENameOperatorVersion
github.com/documize/communitylt3.5.1

0.001 Low

EPSS

Percentile

30.8%

Related for OSV:GHSA-WMWP-PGGC-H4MJ