Security Advisory

CVE-2021-42576

9.8
CRITICAL

Vulnerability Description

The bluemonday sanitizer before 1.0.16 for Go, and before 0.0.8 for Python (in pybluemonday), does not properly enforce policies associated with the SELECT, STYLE, and OPTION elements.
Published Date October 18, 2021
Official Source NIST NVD Advisory