{"id":"GHSA-grjp-4jmr-mjcw","summary":"express-xss-sanitizer vulnerable to Prototype Pollution via allowedTags attribute","details":"The package express-xss-sanitizer before 1.1.3 is vulnerable to Prototype Pollution via the `allowedTags` attribute, allowing the attacker to bypass xss sanitization.","aliases":["CVE-2022-21169"],"modified":"2023-11-08T04:08:04.407342Z","published":"2022-09-27T00:00:22Z","database_specific":{"cwe_ids":["CWE-1321"],"severity":"MODERATE","github_reviewed":true,"github_reviewed_at":"2022-09-30T04:42:55Z","nvd_published_at":"2022-09-26T05:15:00Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-21169"},{"type":"WEB","url":"https://github.com/AhmedAdelFahim/express-xss-sanitizer/issues/4"},{"type":"WEB","url":"https://github.com/AhmedAdelFahim/express-xss-sanitizer/commit/3bf8aaaf4dbb1c209dcb8d87a82711a54c1ab39a"},{"type":"PACKAGE","url":"https://github.com/AhmedAdelFahim/express-xss-sanitizer"},{"type":"WEB","url":"https://runkit.com/embed/w306l6zfm7tu"},{"type":"WEB","url":"https://security.snyk.io/vuln/SNYK-JS-EXPRESSXSSSANITIZER-3027443"}],"affected":[{"package":{"name":"express-xss-sanitizer","ecosystem":"npm","purl":"pkg:npm/express-xss-sanitizer"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"1.1.3"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/09/GHSA-grjp-4jmr-mjcw/GHSA-grjp-4jmr-mjcw.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"}]}