Description
TuiTse-TsuSin is a package for organizing the comparative corpus of Taiwanese Chinese characters and Roman characters, and extracting sentences of the Taiwanese Chinese characters and the Roman characters. Prior to version 1.3.2, when using `tuitse_html` without quoting the input, there is a html injection vulnerability. Version 1.3.2 contains a patch for the issue. As a workaround, sanitize Taigi input with HTML quotation.
Published: 2024-01-23
Score: 6.1 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-0166 TuiTse-TsuSin is a package for organizing the comparative corpus of Taiwanese Chinese characters and Roman characters, and extracting sentences of the Taiwanese Chinese characters and the Roman characters. Prior to version 1.3.2, when using `tuitse_html` without quoting the input, there is a html injection vulnerability. Version 1.3.2 contains a patch for the issue. As a workaround, sanitize Taigi input with HTML quotation.
Github GHSA Github GHSA GHSA-m4m5-j36m-8x72 html injection vulnerability in the `tuitse_html` function.
History

No history.

Subscriptions

Ithuan Tuitse-tsusin
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2024-09-11T19:27:27.515Z

Reserved: 2024-01-15T15:19:19.444Z

Link: CVE-2024-23341

cve-icon Vulnrichment

Updated: 2024-08-01T22:59:32.314Z

cve-icon NVD

Status : Modified

Published: 2024-01-23T18:15:19.250

Modified: 2024-11-21T08:57:32.787

Link: CVE-2024-23341

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses