QID 982235
QID 982235: Java (maven) Security Update for com.mikesamuel:json-sanitizer (GHSA-mm8j-9x84-m9cv)
OWASP json-sanitizer before 1.2.2 may emit closing SCRIPT tags and CDATA section delimiters for crafted input. This allows an attacker to inject arbitrary HTML or XML into embedding documents.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-mm8j-9x84-m9cv for updates pertaining to this vulnerability.
Vendor References
- GHSA-mm8j-9x84-m9cv -
github.com/advisories/GHSA-mm8j-9x84-m9cv
CVEs related to QID 982235
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-mm8j-9x84-m9cv | com.mikesamuel:json-sanitizer |
|