Back to CVE List

CVE-2026-45753

LOW SEVERITY

Vulnerability Description

Symfony's HtmlSanitizer UrlAttributeSanitizer Omits action/formaction/poster/cite — `javascript`: URI Survives Sanitization (XSS)

Vulnerability Details

Published Date
Last Modified
Source
GitHub
Vendor
composer
Product
symfony/html-sanitizer

External References

Discussion (0)

Add Comment

No comments yet. Be the first!