Описание
The package @braintree/sanitize-url before 6.0.0 are vulnerable to Cross-site Scripting (XSS) due to improper sanitization in sanitizeUrl function.
Релиз | Статус | Примечание |
---|---|---|
devel | DNE | |
esm-apps/jammy | needs-triage | |
impish | ignored | end of life |
jammy | needs-triage | |
kinetic | ignored | end of life, was needs-triage |
lunar | DNE | |
mantic | DNE | |
noble | DNE | |
oracular | DNE | |
plucky | DNE |
Показывать по
10
4.3 Medium
CVSS2
5.4 Medium
CVSS3
Связанные уязвимости
CVSS3: 5.4
redhat
больше 3 лет назад
The package @braintree/sanitize-url before 6.0.0 are vulnerable to Cross-site Scripting (XSS) due to improper sanitization in sanitizeUrl function.
CVSS3: 5.4
nvd
больше 3 лет назад
The package @braintree/sanitize-url before 6.0.0 are vulnerable to Cross-site Scripting (XSS) due to improper sanitization in sanitizeUrl function.
CVSS3: 5.4
debian
больше 3 лет назад
The package @braintree/sanitize-url before 6.0.0 are vulnerable to Cro ...
4.3 Medium
CVSS2
5.4 Medium
CVSS3