Headline
CVE-2021-46871: GHSA-j3gg-r6gp-95q2 - GitHub Advisory Database
tag.ex in Phoenix Phoenix.HTML (aka phoenix_html) before 3.0.4 allows XSS in HEEx class attributes.
XSS in HEEx class attributes
Moderate severity GitHub Reviewed Published Apr 12, 2022 • Updated Jun 27, 2022
Related news
GHSA-5g2h-9x5v-5h3x: phoenix_html allows Cross-site Scripting in HEEx class attributes
tag.ex in Phoenix Phoenix.HTML (aka phoenix_html) before 3.0.4 allows XSS in HEEx class attributes.