Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36mh-f84c-9fqq

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Bad validation logic in the Dart SDK versions prior to 2.12.3 allow an attacker to use an XSS attack via DOM clobbering. The validation logic in dart:html for creating DOM nodes from text did not sanitize properly when it came across template tags.

Bad validation logic in the Dart SDK versions prior to 2.12.3 allow an attacker to use an XSS attack via DOM clobbering. The validation logic in dart:html for creating DOM nodes from text did not sanitize properly when it came across template tags.

EPSS

Процентиль: 57%
0.00356
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
почти 5 лет назад

Bad validation logic in the Dart SDK versions prior to 2.12.3 allow an attacker to use an XSS attack via DOM clobbering. The validation logic in dart:html for creating DOM nodes from text did not sanitize properly when it came across template tags.

EPSS

Процентиль: 57%
0.00356
Низкий

Дефекты

CWE-79