Security Advisory

CVE-2020-6802

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-24 21:13:04
Last updated 2024-08-04 09:11:05
Assigner mozilla
State PUBLISHED

Description

In Mozilla Bleach before 3.11, a mutation XSS affects users calling bleach.clean with noscript and a raw tag in the allowed/whitelisted tags option.