Vulnerability GHSA-48rh-qgjr-xfj6
Medium Risk
MEDIUM RISK
CVSS Score: 6.1
Score Range: 4.0–6.9
Medium severity vulnerabilities (CVSS 4.0–6.9). Important issues that meaningfully reduce security confidence.
4 years ago
May 13, 2022 at 01:28 AM UTC
Improper Neutralization of Input During Web Page Generation in Jsoup
1.8.1 - 1.8.2
1.8.1 - 1.8.2
Summary
Improper Neutralization of Input During Web Page Generation in Jsoup
Details
Cross-site scripting (XSS) vulnerability in jsoup before 1.8.3.
Related Vulnerabilities
Other vulnerabilities affecting the same packages
High Risk
1 month ago
jsoup XmlTreeBuilder vulnerable to memory exhaustion through deeply nested namespace declarations
0.2.2 - 0.3.1 GHSA-65r4-943x-97jj
0.2.2 - 0.3.1 GHSA-65r4-943x-97jj
Medium Risk
2 months ago
jsoup: Cleaner may expose markup with custom raw-text elements
1.14.3 and 1.16.1 - 1.16.2 and 1.17.1 - 1.17.2 and 1.19.1 and 1.20.1 and 1.21.1 - 1.21.2 and 1.22.1 - 1.22.2 GHSA-pmhh-3w7g-xqp8
1.14.3 and 1.16.1 - 1.16.2 and 1.17.1 - 1.17.2 and 1.19.1 and 1.20.1 and 1.21.1 - 1.21.2 and 1.22.1 - 1.22.2 GHSA-pmhh-3w7g-xqp8
Medium Risk
4 years ago
jsoup may not sanitize code injection XSS attempts if SafeList.preserveRelativeLinks is enabled
0.2.2 - 0.3.1 GHSA-gp7f-rwcx-9369
0.2.2 - 0.3.1 GHSA-gp7f-rwcx-9369
High Risk
5 years ago
Uncaught Exception in jsoup
0.2.2 - 0.3.1 GHSA-m72m-mhq2-9p6c
0.2.2 - 0.3.1 GHSA-m72m-mhq2-9p6c
Impacted packages
Timeline
Published
4 years ago
May 13, 2022 at 01:28 AM UTC
Fixed (1.8.3)
Unknown
Unknown
Last Modified
2 years ago
May 15, 2024 at 03:18 AM UTC