CVE-2016-10006: Antisamy Project Antisamy
Medium severity, CVSS 6.1. EPSS: 2.4% chance of exploitation in the next 30 days.
In OWASP AntiSamy before 1.5.5, by submitting a specially crafted input (a tag that supports style with active content), you could bypass the library protections and supply executable code. The impact is XSS.
Affected products
- Antisamy Project Antisamy: before 1.5.5 (fixed in 1.5.5)
Published 2016-12-24. Last modified 2026-06-17.