CVE Published: 24/03/2020 |
CVE Updated: 04/08/2024 |
CVE Year: 2020 Source: mozilla |
Vendor: n/a |
Product: Mozilla Bleach Status : PUBLISHED
CVE-2020-6816 Description
In Mozilla Bleach before 3.12, a mutation XSS in bleach.clean when RCDATA and either svg or math tags are whitelisted and the keyword argument strip=False.