Known Vulnerabilities for Bleach by Mozilla
Listed below are 5 of the newest known vulnerabilities associated with "Bleach" by "Mozilla".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2021-23980 | A mutation XSS affects users calling bleach.clean with all of: svg or math in the allowed tags p or br in allowed tags style,... | 6.1 - MEDIUM | 2023-02-16 | 2023-02-27 |
| CVE-2020-6817 | bleach.clean behavior parsing style attributes could result in a regular expression denial of service (ReDoS). Calls to bleac... | 7.5 - HIGH | 2023-02-16 | 2023-02-28 |
| CVE-2020-6816 | In Mozilla Bleach before 3.12, a mutation XSS in bleach.clean when RCDATA and either svg or math tags are whitelisted and the... | 6.1 - MEDIUM | 2020-03-24 | 2023-11-07 |
| CVE-2020-6802 | In Mozilla Bleach before 3.11, a mutation XSS affects users calling bleach.clean with noscript and a raw tag in the allowed/w... | 6.1 - MEDIUM | 2020-03-24 | 2023-11-07 |
| CVE-2018-7753 | An issue was discovered in Bleach 2.1.x before 2.1.3. Attributes that have URI values weren't properly sanitized if the value... | 9.8 - CRITICAL | 2018-03-07 | 2018-03-29 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Mozilla | Bleach | 3.1.3 | |||
| Application | Mozilla | Bleach | 3.1.2 | |||
| Application | Mozilla | Bleach | 3.1.1 | |||
| Application | Mozilla | Bleach | 3.1.0 | |||
| Application | Mozilla | Bleach | 3.0.2 | |||
| Application | Mozilla | Bleach | 3.0.1 | |||
| Application | Mozilla | Bleach | 3.0.0 | |||
| Application | Mozilla | Bleach | 2.1.4 | |||
| Application | Mozilla | Bleach | 2.1.3 | |||
| Application | Mozilla | Bleach | 2.1.2 | |||
| Application | Mozilla | Bleach | 2.1.1 | |||
| Application | Mozilla | Bleach | 2.1 | |||
| Application | Mozilla | Bleach | 2.0 | |||
| Application | Mozilla | Bleach | 1.5 | |||
| Application | Mozilla | Bleach | 1.4.3 | |||
| Application | Mozilla | Bleach | 1.4.2 | |||
| Application | Mozilla | Bleach | 1.4.1 | |||
| Application | Mozilla | Bleach | 1.4 | |||
| Application | Mozilla | Bleach | 1.2.2 | |||
| Application | Mozilla | Bleach | 1.2.1 |