Description
This affects the package datatables.net before 1.11.3. If an array is passed to the HTML escape entities function it would not have its contents escaped.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3529-1 | datatables.js security update |
EUVD |
EUVD-2021-2066 | This affects the package datatables.net before 1.11.3. If an array is passed to the HTML escape entities function it would not have its contents escaped. |
Github GHSA |
GHSA-h73q-5wmj-q8pj | Cross site scripting in datatables.net |
References
History
Tue, 24 Feb 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 16 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-09-16T18:39:20.468Z
Reserved: 2021-01-08T00:00:00.000Z
Link: CVE-2021-23445
Updated: 2024-08-03T19:05:55.898Z
Status : Modified
Published: 2021-09-27T17:15:08.137
Modified: 2024-11-21T05:51:46.320
Link: CVE-2021-23445
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
EUVD
Github GHSA