Skip to main content

Vendor/product archive

htacg / tidy CVEs

Beta · best-effort

6 CVEs tagged to htacg / tidy1 Critical, 2 High, 2 Medium, 1 Low, 0 Unrated.

CVE-2025-6498

Published Jun 23, 2025

A vulnerability classified as problematic has been found in HTACG tidy-html5 5.8.0. Affected is the function defaultAlloc of the file src/alloc.c. The manipulation leads to memory…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2021-33391

Published Feb 17, 2023

An issue in HTACG HTML Tidy v5.7.28 allows attacker to execute arbitrary code via the -g option of the CleanNode() function in gdoc.c.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-17497

Published Dec 10, 2017

In Tidy 5.7.0, the prvTidyTidyMetaCharset function in clean.c allows attackers to cause a denial of service (Segmentation Fault), because the currentNode variable in the "children…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-13692

Published Aug 25, 2017

In Tidy 5.5.31, the IsURLCodePoint function in attrs.c allows attackers to cause a denial of service (Segmentation Fault), as demonstrated by an invalid ISALNUM argument.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1