Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Vivek Krishna

Researcher fromZoho Corporation
#42763of 53,633
6.1Total CVSS
Vulnerabilities · 1
PT-2016-4557
6.1
2016-12-24
Owasp · Owasp Antisamy · CVE-2016-10006
**Name of the Vulnerable Software and Affected Versions** OWASP AntiSamy versions prior to 1.5.5 **Description** The issue allows an attacker to bypass library protections by submitting a specially crafted input, a tag that supports style with active content, which could supply executable code. This results in a cross-site scripting (XSS) impact. **Recommendations** For versions prior to 1.5.5, update to version 1.5.5 or later to resolve the issue.