Project:
Project machine name:
minifyhtmlDate:
2023-July-26
Vulnerability:
Cross site scripting
Affected versions:
<1.13.0 || >=2.0.0 <2.0.3
Description:
Carefully crafted input by an attacker will not be sanitized by this module, which can result in a script injection.
Solution:
Install the latest version:
- If you use the Minify Source HTML module for Drupal 7.x, upgrade to Minify Source HTML 7.x-1.11
- If you use the Minify Source HTML module for Drupal 8.x/9.x, upgrade to Minify Source HTML 8.x-1.13
- If you use the Minify Source HTML module for Drupal 9.x/10.x, upgrade to Minify Source HTML 2.0.3
Reported By:
Fixed By: