owasp json-sanitizer CVE-2021-23899 is a vulnerability in OWASP Json Sanitizer
Published on January 13, 2021

OWASP json-sanitizer before 1.2.2 may emit closing SCRIPT tags and CDATA section delimiters for crafted input. This allows an attacker to inject arbitrary HTML or XML into embedding documents.

NVD


Products Associated with CVE-2021-23899

Want to know whenever a new CVE is published for OWASP Json Sanitizer? stack.watch will email you.

 

Exploit Probability

EPSS
0.44%
Percentile
63.02%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.