Htmlunit

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    2
    Critical Level Threats
    4
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2023-49093

    HtmlUnit vulnerable to Remote Code Execution (RCE) via XSTL

    Last Modified: Nov 21, 2024
    Published: Dec 04, 2023

    CVE-2023-2798

    Denial of service in HtmlUnit

    Last Modified: Nov 21, 2024
    Published: May 25, 2023

    CVE-2023-26119

    Versions of the package net.sourceforge.htmlunit:htmlunit from 0 and before 3.0.0 are vulnerable to Remote Code Execution (RCE) via XSTL, when browsing the attacker’s webpage.

    Last Modified: Nov 21, 2024
    Published: Apr 03, 2023

    CVE-2022-29546

    HtmlUnit NekoHtml Parser before 2.61.0 suffers from a denial of service vulnerability. Crafted input associated with the parsing of Processing Instruction (PI) data leads to heap memory consumption. This is similar to CVE-2022-28366 but affects a much later version of the product.

    Last Modified: Nov 21, 2024
    Published: Apr 25, 2022

    CVE-2022-28366

    Certain Neko-related HTML parsers allow a denial of service via crafted Processing Instruction (PI) input that causes excessive heap memory consumption. In particular, this issue exists in HtmlUnit-Neko through 2.26, and is fixed in 2.27. This issue also exists in CyberNeko HTML through 1.9.22 (also affecting OWASP AntiSamy before 1.6.6), but 1.9.22 is the last version of CyberNeko HTML. NOTE: this may be related to CVE-2022-24839.

    Last Modified: Nov 21, 2024
    Published: Apr 21, 2022
    Items Per Page
    Htmlunit Vulnerabilities & Security CVEs | CVE-DB