CVE-2021-23974 – The DOMParser API did not properly process ‘<noscript>’ elements for escaping. This …

Vuln ID: CVE-2021-23974

Published:  2021-02-26  02:15:13Z

Description: The DOMParser API did not properly process ‘<noscript>’ elements for escaping. This could be used as an mXSS vector to bypass an HTML Sanitizer. This vulnerability affects Firefox < 86.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):