Description
In Materialize through 1.0.0, XSS is possible via the Tooltip feature.
Remediation
References
https://github.com/Dogfalo/materialize/issues/6286
Related Vulnerabilities
CVE-2021-23341 Vulnerability in maven package org.webjars:prismjs
CVE-2020-5397 Vulnerability in maven package org.springframework:spring-webmvc
CVE-2018-3716 Vulnerability in npm package simplehttpserver
CVE-2022-25876 Vulnerability in npm package link-preview-js
CVE-2016-5003 Vulnerability in maven package org.apache.xmlrpc:xmlrpc