CVE-2017-0931

Publication date

2018-06-04 19:00:00

Family

hackerone

State

PUBLISHED

Description

html-janitor node module suffers from a Cross-Site Scripting (XSS) vulnerability via clean() accepting user-controlled values.