Количество 2
Количество 2
CVE-2016-10548
больше 7 лет назад
Arbitrary code execution is possible in reduce-css-calc node module <=1.2.4 through crafted css. This makes cross sites scripting (XSS) possible on the client and arbitrary code injection possible on the server and user input is passed to the `calc` function.
CVSS3: 6.1
EPSS: Низкий
GHSA-4662-j96g-mv46
больше 7 лет назад
Arbitrary Code Injection in reduce-css-calc
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2016-10548 Arbitrary code execution is possible in reduce-css-calc node module <=1.2.4 through crafted css. This makes cross sites scripting (XSS) possible on the client and arbitrary code injection possible on the server and user input is passed to the `calc` function. | CVSS3: 6.1 | 0% Низкий | больше 7 лет назад | |
GHSA-4662-j96g-mv46 Arbitrary Code Injection in reduce-css-calc | 0% Низкий | больше 7 лет назад |
Уязвимостей на страницу
20