VDB
CVE-2011-4457
CVE-2011-4457
PUBLISHED
CVSS 2.5999999046325684 LOW
OWASP HTML Sanitizer allows redirecting to an arbitrary URL when JavaScript is disabled
EPSS 1.37% · 70.6th percentile
Risk Scores
CVSS 2.0
2.5999999046325684
EPSS Score
1.37%
70.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Maven | com.googlecode.owasp-java-html-sanitizer:owasp-java-html-sanitizer | 0 |
| n/a | n/a | * |
| owasp-java-html-sanitizer_project | owasp-java-html-sanitizer | 48, 0, 74 |
Timeline
- Nov 17, 2011 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 21, 2022 EPSS Score
- Jul 13, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Oct 28, 2022 EPSS Score
- Dec 20, 2022 EPSS Score
- Feb 11, 2023 EPSS Score
- Apr 5, 2023 EPSS Score
- May 28, 2023 EPSS Score
- Jul 20, 2023 EPSS Score
References
- http://code.google.com/p/owasp-java-html-sanitizer/wiki/CVE20114457 url
- http://owasp-java-html-sanitizer.googlecode.com/svn/trunk/CHANGE_LOG.html technical
- https://nvd.nist.gov/vuln/detail/CVE-2011-4457 advisory
- https://github.com/OWASP/java-html-sanitizer/commit/2027d3df73f62eb30b7f08269f346989f03144bd url
- https://github.com/OWASP/java-html-sanitizer package
- https://github.com/OWASP/java-html-sanitizer/blob/35c506cfd452dba634202f13a7cc2e2a63ad7ee0/change_log.md?plain=1#L103 url
- https://github.com/OWASP/java-html-sanitizer/blob/35c506cfd452dba634202f13a7cc2e2a63ad7ee0/docs/cve20114457.md url