HTML injection attack is closely related to Cross-site Scripting (XSS). HTML injection uses HTML to deface the page. XSS, as the name implies, injects JavaScript into the page. Both attacks exploit insufficient validation of user input.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| microweber/microweber(Packagist) | 0 | 1.3.2 | N/A |
CVSS Metrics