golang / vulndb

[mirror] The Go Vulnerability Database
Other
554 stars 54 forks source link

x/vulndb: potential Go vuln in html/template: CVE-2023-39319 #2043

Closed tatianab closed 10 months ago

tatianab commented 10 months ago

CVE ID

CVE-2023-39319

GHSA ID

No response

Additional information

html/template: improper handling of special tags within script contexts

The html/template package did not apply the proper rules for handling occurrences

of "<script", "<!--", and "</script" within JS literals in Githubissues.

  • Githubissues is a development platform for aggregating issues.