Home

Description

HtmlSanitizer is a .NET library for cleaning HTML fragments and documents from constructs that can lead to XSS attacks. Prior to versions 9.0.892 and 9.1.893-beta, if the template tag is allowed, its contents are not sanitized. The template tag is a special tag that does not usually render its contents, unless the shadowrootmode attribute is set to open or closed. This issue has been patched in versions 9.0.892 and 9.1.893-beta.

PUBLISHED Reserved 2026-02-02 | Published 2026-02-04 | Updated 2026-02-05 | Assigner GitHub_M




MEDIUM: 6.3CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N

Problem types

CWE-116: Improper Encoding or Escaping of Output

Product status

< 9.0.892
affected

< 9.1.893-beta
affected

References

github.com/...itizer/security/advisories/GHSA-j92c-7v7g-gj3f

github.com/...ommit/0ac53dca30ddad963f2b243669a5066933d82b81

www.nuget.org/packages/HtmlSanitizer/9.0.892

www.nuget.org/packages/HtmlSanitizer/9.1.893-beta

cve.org (CVE-2026-25543)

nvd.nist.gov (CVE-2026-25543)

Download JSON