VDB
GCVE-VVD-MAGEIA-2020-176
GCVE-VVD-MAGEIA-2020-176
Advisory Published
In Mozilla Bleach before 3.12, a mutation XSS in bleach.clean when RCDATA
and either svg or math tags are whitelisted and the keyword argument
strip=False. (CVE-2020-6816)
Regular expression denial of service. (CVE-2020-6817)
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | nvidia390 | 0 (affected), 390.138-1.mga7.nonfree (unaffected) | — |
| Mageia | python-bleach | 0 (affected), 3.1.4-1.mga7 (unaffected), 0 (affected), 3.1.4-1.mga7 (unaffected) | — |
Aliases
Transitive aliases
VVD-CISA-2020-6817OPENSUSE-SU-2024:11219-1GSD-2020-6817OPENSUSE-SU-2021:0552-1BDU:2020-01964VVD-GENTOO-2020-714596GHSA-vqhp-cxgc-6wmmEUVD-2020-0056BDU:2022-07040GHSA-m6xf-fq7q-8743CVE-2020-6802EUVD-2020-0054VVD-MAGEIA-2020-125GHSA-q65m-pv3f-wr5rEUVD-2020-0055PYSEC-2020-340OPENSUSE-SU-2021:0571-1OPENSUSE-SU-2024:14134-1
References
Browse GCVE Records
100 records in the GCVE database · Updated April 16, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.