VYPR

Cyberneko HTML

by Cyberneko HTML Project

CVEs (1)

  • CVE-2022-28366HigApr 21, 2022
    risk 0.42cvss 7.5epss 0.02

    Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML…