Vulnerabilities > Microco > Bluemonday > 1.0.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-03-27 | CVE-2021-29272 | Cross-site Scripting vulnerability in Microco Bluemonday bluemonday before 1.0.5 allows XSS because certain Go lowercasing converts an uppercase Cyrillic character, defeating a protection mechanism against the "script" string. | 6.1 |