CVE-2020-7690

It’s possible to inject JavaScript code via the html method.