The Htmlcleaner Project maintains a focused HTML sanitization library, a parsing and filtering component embedded in web applications and content-management systems to prevent injection attacks. The durable exposure signal centers on concurrency handling and memory-safety issues, reflected in race conditions and out-of-bounds writes characteristic of parsing-heavy codebases. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Htmlcleaner Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-34624HIGH An issue was discovered htmlcleaner thru = 2.28 allows attackers to cause a denial of service or other unspecified impacts via crafted object that uses cyclic dependencies. | Jun 14, 2023 | 7.5 | 21 | NO | NO |
CVE-2013-5035MEDIUM Multiple race conditions in HtmlCleaner before 2.6, as used in Open-Xchange AppSuite 7.2.2 before rev13 and other products, allow remote authenticated users to read the private e-m | Sep 5, 2013 | 4.9 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Htmlcleaner Project.
Media articles that mention a CVE ID that affects a product developed by Htmlcleaner Project — matched by CVE ID, not by vendor name.