QID 983485
QID 983485: Java (maven) Security Update for org.owasp.antisamy:antisamy (GHSA-xv6v-72hh-g6g2)
OWASP OWASP ANTISAMY version 1.5.7 and earlier contains a Cross Site Scripting (XSS) vulnerability in AntiSamy.scan() - for both SAX & DOM that can result in Cross Site Scripting.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-xv6v-72hh-g6g2 for updates pertaining to this vulnerability.
Vendor References
- GHSA-xv6v-72hh-g6g2 -
github.com/advisories/GHSA-xv6v-72hh-g6g2
CVEs related to QID 983485
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-xv6v-72hh-g6g2 | org.owasp.antisamy:antisamy |
|