TuiTse-TsuSin is a package for organizing the comparative corpus of Taiwanese Chinese characters and Roman characters, and extracting sentences of the Taiwanese Chinese characters and the Roman characters. Prior to version 1.3.2, when using `tuitse_html` without quoting the input, there is a html injection vulnerability. Version 1.3.2 contains a patch for the issue. As a workaround, sanitize Taigi input with HTML quotation.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-0166 TuiTse-TsuSin is a package for organizing the comparative corpus of Taiwanese Chinese characters and Roman characters, and extracting sentences of the Taiwanese Chinese characters and the Roman characters. Prior to version 1.3.2, when using `tuitse_html` without quoting the input, there is a html injection vulnerability. Version 1.3.2 contains a patch for the issue. As a workaround, sanitize Taigi input with HTML quotation.
Github GHSA Github GHSA GHSA-m4m5-j36m-8x72 html injection vulnerability in the `tuitse_html` function.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2024-09-11T19:27:27.515Z

Reserved: 2024-01-15T15:19:19.444Z

Link: CVE-2024-23341

cve-icon Vulnrichment

Updated: 2024-08-01T22:59:32.314Z

cve-icon NVD

Status : Modified

Published: 2024-01-23T18:15:19.250

Modified: 2024-11-21T08:57:32.787

Link: CVE-2024-23341

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses