CVE-2021-23472

All FrameworksBootstrapCWE-OtherCVE-2021-23472

CVE-2021-23472

State: PUBLISHED · Published: 2021-11-03 · Updated: 2024-09-17 · Assigner: snyk
Description
This affects versions before 1.19.1 of package bootstrap-table. A type confusion vulnerability can lead to a bypass of input sanitization when the input provided to the escapeHTML function is an array (instead of a string) even if the escape attribute is set.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/23xxx/CVE-2021-23472.json