Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2023-24540

Опубликовано: 04 сент. 2025
Источник: msrc
CVSS3: 9.8
EPSS Низкий

Описание

Improper handling of JavaScript whitespace in html/template

EPSS

Процентиль: 48%
0.00243
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 2 лет назад

Not all valid JavaScript whitespace characters are considered to be whitespace. Templates containing whitespace characters outside of the character set "\t\n\f\r\u0020\u2028\u2029" in JavaScript contexts that also contain actions may not be properly sanitized during execution.

CVSS3: 8.1
redhat
больше 2 лет назад

Not all valid JavaScript whitespace characters are considered to be whitespace. Templates containing whitespace characters outside of the character set "\t\n\f\r\u0020\u2028\u2029" in JavaScript contexts that also contain actions may not be properly sanitized during execution.

CVSS3: 9.8
nvd
больше 2 лет назад

Not all valid JavaScript whitespace characters are considered to be whitespace. Templates containing whitespace characters outside of the character set "\t\n\f\r\u0020\u2028\u2029" in JavaScript contexts that also contain actions may not be properly sanitized during execution.

CVSS3: 9.8
debian
больше 2 лет назад

Not all valid JavaScript whitespace characters are considered to be wh ...

CVSS3: 9.8
github
больше 2 лет назад

Not all valid JavaScript whitespace characters are considered to be whitespace. Templates containing whitespace characters outside of the character set "\t\n\f\r\u0020\u2028\u2029" in JavaScript contexts that also contain actions may not be properly sanitized during execution.

EPSS

Процентиль: 48%
0.00243
Низкий

9.8 Critical

CVSS3