CVE-2021-23445

This affects the package datatables.net before 1.11.3. If an array is passed to the HTML escape entities function it would not have its contents escaped.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:datatables:datatables.net:*:*:*:*:*:node.js:*:*

Information

Published : 2021-09-27 10:15

Updated : 2021-10-12 08:45


NVD link : CVE-2021-23445

Mitre link : CVE-2021-23445


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

datatables

  • datatables.net