Back to search
CVE-2020-6802
Published: Mar 24, 2020
Modified: Aug 4, 2024
PUBLISHED
Description
In Mozilla Bleach before 3.11, a mutation XSS affects users calling bleach.clean with noscript and a raw tag in the allowed/whitelisted tags option.
| Vendor | Product | Versions |
|---|---|---|
n/a | Mozilla Bleach | affected <=3.10 |
References
FEDORA-2020-827b677e15
vendor-advisory
x_refsource_FEDORA
FEDORA-2020-e1fa96c506
vendor-advisory
x_refsource_FEDORA
FEDORA-2020-e9c8bdd1e3
vendor-advisory
x_refsource_FEDORA
https://advisory.checkmarx.net/advisory/CX-2020-4276
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now