CVE-2026-84371 | ApostropheCMS Apostrophe up to 2.17.6 HTML Sanitizer index.js HTML injection

SecurityVulns

A vulnerability marked as problematic has been reported in ApostropheCMS Apostrophe up to 2.17.6. This issue affects some unknown processing of the file packages/sanitize-html/index.js of the component HTML Sanitizer. Performing a manipulation results in HTML injection.

This vulnerability was named CVE-2026-84371. The attack may be initiated remotely. There is no available exploit.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More