CVE-2026-84371 | ApostropheCMS Apostrophe up to 2.17.6 HTML Sanitizer index.js HTML injection
A vulnerability marked as problematic has been reported in ApostropheCMS Apostrophe up to 2.17.6. This issue affects some unknown processing of the file packages/sanitize-html/index.js of the component HTML Sanitizer. Performing a manipulation results in HTML injection.
This vulnerability was named CVE-2026-84371. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More