Description
A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS attack.
Remediation
References
Related Vulnerabilities
WordPress Plugin Pierre's Wordspew 'wordspew.php' Multiple SQL Injection Vulnerabilities (5.61)
Magento Server-Side Request Forgery (SSRF) Vulnerability (CVE-2019-7923)
MySQL CVE-2022-21245 Vulnerability (CVE-2022-21245)
Joomla! Core 1.6.x Security Bypass (1.6.0 - 1.6.6)
Ruby on Rails Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2011-0447)