CVE

CVE-2021-38186

CVE-2021-38186

An issue was discovered in the comrak crate before 0.10.1 for Rust. It mishandles & characters, leading to XSS via &# HTML entities.

Source: CVE-2021-38186

Exit mobile version