justhtml vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
GHSA-JF6W-2MVX-633JMediumjusthtml: justhtml: to_markdown() code-span blank-line breakout enables XSSGHSA-R8CJ-3554-33MRLowjusthtml: justhtml introduces denial-of-service hardeningGHSA-VRX2-77F2-WW34Mediumjusthtml: justhtml has sanitization bypass in custom policies and programmatic DOMGHSA-4P64-V8F5-R2GXLowjusthtml: Multiple security fixes in justhtmlGHSA-C9VM-HV86-F23RMediumjusthtml: justhtml includes multiple security fixesGHSA-R758-8HXW-4845Lowjusthtml: justhtml: Mutation XSS with custom foreign-namespace sanitization policiesGHSA-5VP3-3CG6-2RQ3Highjusthtml: JustHTML is vulnerable to XSS via code fence breakout in <pre> contentGHSA-3RCM-VJRC-P45JMediumjusthtml: JustHTML has a Sanitizer Bypass (in Markdown)GHSA-QVC2-MG72-JJHXMediumjusthtml: JustHTML Affected by Mutation XSS via Literal Text Serialization in Raw Text Elements (style/script)GHSA-V7CF-C9RM-WM3JHighjusthtml: Uncontrolled recursion DoS in JustHTML() via deeply nested HTML

Stop the waste.
Protect your environment with Kodem.