Known Vulnerabilities for Sanitize by Sanitize Project

Listed below are 4 of the newest known vulnerabilities associated with "Sanitize" by "Sanitize Project".

These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.

Data on known vulnerable versions is also displayed based on information from known CPEs

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-42520 json Jenkins Credentials Binding Plugin 719.v80e905ef14eb_ and earlier does not sanitize file names for file and zip file credenti... Not Provided 2026-04-29 2026-04-29
CVE-2026-41466 json ProjeQtor versions 7.0 through 12.4.3 contain a stored cross-site scripting vulnerability in the checkValidHtmlText() functio... Not Provided 2026-04-27 2026-04-27
CVE-2026-41391 json OpenClaw before 2026.3.31 fails to properly sanitize PIP_INDEX_URL and UV_INDEX_URL environment variables in host execution c... Not Provided 2026-04-28 2026-04-29
CVE-2026-41318 json AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. P... Not Provided 2026-04-24 2026-04-24
CVE-2026-41238 json DOMPurify is a DOM-only cross-site scripting sanitizer for HTML, MathML, and SVG. Versions 3.0.1 through 3.3.3 are vulnerable... Not Provided 2026-04-23 2026-04-23
CVE-2026-41230 json Froxlor is open source server administration software. Prior to version 2.3.6, `DomainZones::add()` accepts arbitrary DNS rec... Not Provided 2026-04-23 2026-04-23
CVE-2026-41067 json Astro is a web framework. Prior to 6.1.6, the defineScriptVars function in Astro's server-side rendering pipeline uses a case... Not Provided 2026-04-24 2026-04-24
CVE-2026-40606 json mitmproxy is a interactive TLS-capable intercepting HTTP proxy for penetration testers and software developers and mitmweb is... Not Provided 2026-04-21 2026-04-22
CVE-2026-40491 json gdown is a Google Drive public file/folder downloader. Versions prior to 5.2.2 are vulnerable to a Path Traversal attack with... Not Provided 2026-04-18 2026-04-20
CVE-2026-40301 json DOMSanitizer is a DOM/SVG/MathML Sanitizer for PHP 7.3+. Prior to version 1.0.10, DOMSanitizer::sanitize() allows