logo

Database

Reflected cross-site scripting (XSS) In org.owasp.antisamy:antisamy

Description

OWASP AntiSamy vulnerable to Cross-site Scripting In OWASP AntiSamy before 1.5.5, by submitting a specially crafted input (a tag that supports style with active content), you could bypass the library protections and supply executable code. The impact is XSS.

Mitigation

Update Impact

Minimal update. May introduce new vulnerabilities or breaking changes.

Ecosystem
Component
Affected version
Patched versions