B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-44990 - Apostrophe has default XSS via `xmp` raw-text passthrough in `sanitize-html`

CVE ID :CVE-2026-44990 Published : June 12, 2026, 9:16 p.m. | 1 hour, 51 minutes ago Description :ApostropheCMS is an open-source Node.js content management system, and sanitize-html provides a simple HTML sanitizer with a clear API. Under the default configuration, versions of...

Original-Artikel öffnen Zurück zur Übersicht