Search
Find merged stories by title or summary.
Vulnerabilities & Patches
Emerging1 src
CVE-2026-74793 - National Institute of Standards and Technology (.gov)
CVE-2026-74793 National Institute of Standards and Technology (.gov)
Vulnerabilities & Patches
Emerging1 src
CVE-2026-74793 - justhtml before 3.11.0 XSS via selectedcontent projection
CVE ID : CVE-2026-74793 Published : Aug. 23, 2026, 2:16 p. m. • 2 hours, 54 minutes ago Description : justhtml before 3. 11. 0 contains a cross-site scripting vulnerability where the default sanitizer bypasses event handler removal in selectedcontent projections. Attackers can inject SVG or MathML elements with event handlers that are cloned and reinserted into output without sanitization, enabling stored or reflected XSS attacks. Severity: 6.1 • MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...
You've reached the end of current stories for this search.
