Description
Text nodes not in the HTML namespace are incorrectly literally rendered, causing text which should be escaped to not be. This could lead to an XSS attack.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-2188 | Text nodes not in the HTML namespace are incorrectly literally rendered, causing text which should be escaped to not be. This could lead to an XSS attack. |
Github GHSA |
GHSA-2wrh-6pvc-2jm9 | Improper rendering of text nodes in golang.org/x/net/html |
Ubuntu USN |
USN-8089-1 | Go Networking vulnerabilities |
Ubuntu USN |
USN-8089-2 | Go Networking vulnerabilities |
Ubuntu USN |
USN-8089-3 | ADSys, Juju Core, LXD vulnerabilities |
References
History
Fri, 27 Sep 2024 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Go
Published:
Updated: 2024-09-27T21:57:51.807Z
Reserved: 2023-07-27T17:05:38.856Z
Link: CVE-2023-3978
Updated: 2024-08-02T07:08:50.711Z
Status : Modified
Published: 2023-08-02T20:15:12.097
Modified: 2024-11-21T08:18:27.680
Link: CVE-2023-3978
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA
Ubuntu USN