guardian/html-janitor

guardian/html-janitor

Releases16
Frequency4 months 1 week
Last Release
Stars52
Scribe module - DO NOT DELETE

CVE History

CVEPublishedCVSS v3CVSS v2
4.3 MEDIUM

html-janitor node module suffers from an External Control of Critical State Data vulnerability via user-control of the '_sanitized' variable causing sanitization to be bypassed.

6.1 MEDIUM4.3 MEDIUM

html-janitor node module suffers from a Cross-Site Scripting (XSS) vulnerability via clean() accepting user-controlled values.