Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21941
HistoryNov 12, 2019 - 1:33 a.m.

Cross-Site Scripting (XSS)

2019-11-1201:33:26
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

EPSS

0.001

Percentile

30.9%

enshrined/svg-sanitize is vulnerable to cross-site scripting (XSS). The vulnerability exists due to the possible inclusion of as a whitespace to bypass the regular expression used to detect scripts.

EPSS

0.001

Percentile

30.9%

Related for VERACODE:21941