Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9rwj-9j2h-fhvm

Опубликовано: 23 сент. 2022
Источник: github
Github: Прошло ревью
CVSS3: 6.1

Описание

Toast UI Grid vulnerable to Cross-site Scripting

Toast UI Grid is a component to display and edit data. Versions prior to 4.21.3 are vulnerable to cross-site scripting attacks when pasting specially crafted content into editable cells. This issue was fixed in version 4.21.3. There are no known workarounds.

Пакеты

Наименование

tui-grid

npm
Затронутые версииВерсия исправления

< 4.21.3

4.21.3

EPSS

Процентиль: 46%
0.00234
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 6.1
nvd
больше 3 лет назад

Toast UI Grid is a component to display and edit data. Versions prior to 4.21.3 are vulnerable to cross-site scripting attacks when pasting specially crafted content into editable cells. This issue was fixed in version 4.21.3. There are no known workarounds.

EPSS

Процентиль: 46%
0.00234
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79