CNNVD-202506-2996 Information

CNNVD ID

CNNVD-202506-2996

CVE-2025-52561

  • CNNVD Published: 2025-06-23

Description (Chinese)

HTMLSanitizer是JuliaHub开源的一个HTML格式化软件。 HTMLSanitizer 0.2.1之前版本存在跨站脚本漏洞,该漏洞源于style标签内容未正确转义导致跨站脚本攻击。

Description (English)

HTML Sanitizer is an HTML formatting software from the Juliehub Open Source. The previous version of HTMLSanitizer 0.2.1 had a cross-site script loophole, which stemmed from the incorrect transposition of the style label content leading to the cross-site script attack.

Hazard Level

High

Vulnerability Type

跨站脚本

Affected Vendor

JuliaHub

Published

2025-06-23

Last Modified

2026-02-24

References

https://access.redhat.com/security/cve/cve-2025-52561 https://nvd.nist.gov/vuln/detail/CVE-2025-52561

Patch

https://github.com/JuliaComputing/HTMLSanitizer.jl/releases

Share on: