Multiple CVEs Identified in html/template Improper Handling Vulnerabilities
First seen 18 Feb 2026, 13:23 UTC
•
•44
Export
Article Content
Browse articles
Five vulnerabilities have been published related to improper handling in the html/template package, affecting various aspects such as HTML comments, special tags, empty attributes, JavaScript whitespace, and CSS values. These vulnerabilities could potentially allow for exploitation in applications utilizing this package. The CVEs were published on February 18, 2026, with earlier known publication dates in 2023.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2023-05-11
CVE-2023-29400 and CVE-2023-24539 published
2023-05-11
CVE-2023-24540 published
2023-09-08
CVE-2023-39318 and CVE-2023-39319 published
2026-02-18
Information published on multiple CVEs