Uncontrolled Recursion in Java HTML Sanitizer - #VU152248
Published: September 25, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to uncontrolled recursion in the CSS grammar parser when processing deeply nested CSS functions in style attributes. A remote attacker can submit untrusted HTML containing deeply nested CSS functions to cause a denial of service.
Only policies that allow style attributes are affected.