Known Vulnerabilities for Sanitize-html by Apostrophecms
Listed below are 5 of the newest known vulnerabilities associated with "Sanitize-html" by "Apostrophecms".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-76210 json | phpMyFAQ before 4.1.6 does not adequately sanitize HTML in FAQ answers before generating PDFs via TCPDF. An attacker with per... | Not Provided | 2026-08-19 | 2026-08-21 |
| CVE-2026-73492 json | Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Fro... | Not Provided | 2026-08-12 | 2026-08-14 |
| CVE-2026-73491 json | Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Fro... | Not Provided | 2026-08-12 | 2026-08-13 |
| CVE-2026-73490 json | Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Pri... | Not Provided | 2026-08-12 | 2026-08-13 |
| CVE-2026-69116 json | FlyEnv before 4.18.0 fails to sanitize HTML from markdown rendering and AI chat content passed to Vue v-html directives. Atta... | Not Provided | 2026-08-10 | 2026-08-11 |
| CVE-2026-63670 json | ApostropheCMS is an open-source Node.js content management system. Prior to 2.17.6, sanitizeHtml() can pass disallowed execut... | Not Provided | 2026-08-17 | 2026-08-18 |
| CVE-2026-57958 json | Mixpost through 2.6.0 contains a reflected cross-site scripting vulnerability that allows unauthenticated attackers to execut... | Not Provided | 2026-06-29 | 2026-06-29 |
| CVE-2026-56397 json | SiYuan before v3.6.1 fails to sanitize package metadata and README content in the Bazaar marketplace, allowing malicious pack... | Not Provided | 2026-06-21 | 2026-06-24 |
| CVE-2026-56395 json | SiYuan before v3.6.1 fails to sanitize package metadata and README content in the Bazaar marketplace, allowing malicious pack... | Not Provided | 2026-06-21 | 2026-06-22 |
| CVE-2026-56356 json | n8n contains a stored cross-site scripting vulnerability in the Chat Trigger node's Custom CSS field due to a misconfiguratio... | Not Provided | 2026-06-30 | 2026-07-01 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apostrophecms | Sanitize-html | 2.3.2 | |||
| Application | Apostrophecms | Sanitize-html | 2.3.1 | |||
| Application | Apostrophecms | Sanitize-html | 2.3.0 | |||
| Application | Apostrophecms | Sanitize-html | 2.2.0 | |||
| Application | Apostrophecms | Sanitize-html | 2.1.2 | |||
| Application | Apostrophecms | Sanitize-html | 2.1.1 | |||
| Application | Apostrophecms | Sanitize-html | 2.1.0 | |||
| Application | Apostrophecms | Sanitize-html | 2.0.0 | |||
| Application | Apostrophecms | Sanitize-html | 1.9.0 | |||
| Application | Apostrophecms | Sanitize-html | 1.8.0 | |||
| Application | Apostrophecms | Sanitize-html | 1.7.2 | |||
| Application | Apostrophecms | Sanitize-html | 1.7.1 | |||
| Application | Apostrophecms | Sanitize-html | 1.7.0 | |||
| Application | Apostrophecms | Sanitize-html | 1.6.1 | |||
| Application | Apostrophecms | Sanitize-html | 1.6.0 | |||
| Application | Apostrophecms | Sanitize-html | 1.5.3 | |||
| Application | Apostrophecms | Sanitize-html | 1.5.2 | |||
| Application | Apostrophecms | Sanitize-html | 1.5.1 | |||
| Application | Apostrophecms | Sanitize-html | 1.5.0 | |||
| Application | Apostrophecms | Sanitize-html | 1.4.3 |