Description
In Materialize through 1.0.0, XSS is possible via the Tooltip feature.
Remediation
References
https://github.com/Dogfalo/materialize/issues/6286
Related Vulnerabilities
CVE-2019-15903 Vulnerability in npm package dbus
CVE-2020-19697 Vulnerability in npm package editor.md
CVE-2020-28500 Vulnerability in maven package org.webjars.bower:lodash
CVE-2022-40955 Vulnerability in maven package org.apache.inlong:manager-pojo
CVE-2022-23945 Vulnerability in maven package org.apache.shenyu:shenyu-common