VulnSea

justhtml vulnerabilities

CVEs whose affected-version data names the justhtml package (pip). Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

11 CVEsRSS

CVE-2026-77088Medium· 6.1
2mo ago

justhtml: to_markdown() code-span blank-line breakout enables XSS

justhtml: to_markdown() code-span blank-line breakout enables XSS

Sunlitjusthtml · justhtmlEPSS 0.19%via OSV
GHSA-jf6w-2mvx-633jMedium· 6.1
2mo ago

justhtml: to_markdown() code-span blank-line breakout enables XSS

justhtml: to_markdown() code-span blank-line breakout enables XSS

Sunlitjusthtml · justhtmlvia GHSA
CVE-2026-4671Low
4mo ago

justhtml introduces denial-of-service hardening

justhtml introduces denial-of-service hardening

Sunlitjusthtml · justhtmlEPSS 0.37%via OSV
CVE-2026-6827Medium
5mo ago

justhtml has sanitization bypass in custom policies and programmatic DOM

justhtml has sanitization bypass in custom policies and programmatic DOM

Sunlitjusthtml · justhtmlEPSS 0.19%via OSV
CVE-2026-7808Low
5mo ago

Multiple security fixes in justhtml

Multiple security fixes in justhtml

Sunlitjusthtml · justhtmlEPSS 0.35%via OSV
CVE-2026-5388Medium
5mo ago

justhtml includes multiple security fixes

justhtml includes multiple security fixes

Sunlitjusthtml · justhtmlEPSS 0.34%via OSV
CVE-2026-5751Low
5mo ago

justhtml: Mutation XSS with custom foreign-namespace sanitization policies

justhtml: Mutation XSS with custom foreign-namespace sanitization policies

Sunlitjusthtml · justhtmlEPSS 0.19%via OSV
CVE-2026-5389High
6mo ago

JustHTML is vulnerable to XSS via code fence breakout in <pre> content

JustHTML is vulnerable to XSS via code fence breakout in <pre> content

Twilightjusthtml · justhtmlEPSS 0.19%via OSV
CVE-2026-8630Medium
6mo ago

JustHTML Affected by Mutation XSS via Literal Text Serialization in Raw Text Elements (style/script)

JustHTML Affected by Mutation XSS via Literal Text Serialization in Raw Text Elements (style/script)

Sunlitjusthtml · justhtmlEPSS 0.19%via OSV
CVE-2026-8445Medium
6mo ago

JustHTML has a Sanitizer Bypass (in Markdown)

JustHTML has a Sanitizer Bypass (in Markdown)

Sunlitjusthtml · justhtmlEPSS 0.38%via OSV
CVE-2026-9769High
6mo ago

Uncontrolled recursion DoS in JustHTML() via deeply nested HTML

Uncontrolled recursion DoS in JustHTML() via deeply nested HTML

Twilightjusthtml · justhtmlEPSS 0.28%via OSV
justhtml vulnerabilities (CVEs) · VulnSea