Security Advisory

CVE-2020-6816

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-24 21:15:40
Last updated 2024-08-04 09:11:05
Assigner mozilla
State PUBLISHED

Description

In Mozilla Bleach before 3.12, a mutation XSS in bleach.clean when RCDATA and either svg or math tags are whitelisted and the keyword argument strip=False.