CVE-2026-25543 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

HtmlSanitizer is a .NET library for cleaning HTML fragments and documents from constructs that can lead to XSS attacks. Prior to versions 9.0.892 and 9.1.893-be…
Medium CVSS: 6.3

CVE-2026-25543

HtmlSanitizer is a .NET library for cleaning HTML fragments and documents from constructs that can lead to XSS attacks. Prior to versions 9.0.892 and 9.1.893-beta, if the template tag is allowed, its contents are not sanitized. The template tag is a special tag that does not usually render its contents, unless the shadowrootmode attribute is set to open or closed. This issue has been patched in versions 9.0.892 and 9.1.893-beta.
Vendor
Htmlsanitizer Project
Product
Htmlsanitizer
CWE
CWE-116
Yayın Tarihi
2026-02-04 22:16:00
Güncelleme
2026-02-24 21:29:57
Source Identifier
security-advisories@github.com
KEV Date Added
-

Kategoriler

Referanslar