HTML sanitizer aiming to provide XSS-safe markup based on explicitly allowed tags, attributes and values.
100%
Total Score
100
100
100
| Title | Versions | Severity |
|---|---|---|
CVE-2023-47125 typo3/html-sanitizer is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 1.0.0 - 1.5.2 and 2.0.0 - 2.1.3. | 1.0.0 - 1.5.22.0.0 - 2.1.3 | Medium |
CVE-2023-38500 typo3/html-sanitizer is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 1.0.0 - 1.5.1 and 2.0.0 - 2.1.2. | 1.0.0 - 1.5.12.0.0 - 2.1.2 | Medium |
CVE-2022-23499 typo3/html-sanitizer is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 1.0.0 - 1.5.0 and 2.0.0 - 2.1.1. | 1.0.0 - 1.5.02.0.0 - 2.1.1 | Medium |
CVE-2022-36020 typo3/html-sanitizer is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in versions 1.0.0 - 1.0.7 and 2.0.0 - 2.0.16. | 1.0.0 - 1.0.72.0.0 - 2.0.16 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
psr/log Version ^1.0 || ^2.0 || ^3.0 | — | — |
masterminds/html5 Version ^2.7.6 | — | — |
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant