Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Willkg

#25546of 53,630
9.8Total CVSS
Vulnerabilities · 1
PT-2018-18257
9.8
2018-03-07
None · Bleach · CVE-2018-7753
Name of the Vulnerable Software and Affected Versions: Bleach versions 2.1.x before 2.1.3 Description: An issue was discovered where attributes with URI values were not properly sanitized if the values contained character entities. This allowed for the construction of a URI value with a scheme that was not allowed to bypass sanitization. Recommendations: For versions 2.1.x before 2.1.3, update to version 2.1.3 to resolve the issue.