Количество 2
Количество 2
CVE-2019-10772
около 6 лет назад
It is possible to bypass enshrined/svg-sanitize before 0.13.1 using the "xlink:href" attribute due to mishandling of the xlink namespace by the sanitizer.
CVSS3: 6.1
EPSS: Низкий
GHSA-8rc5-hx3v-2jg7
почти 6 лет назад
Sanitizer bypass in svg-sanitizer
CVSS3: 6.1
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-10772 It is possible to bypass enshrined/svg-sanitize before 0.13.1 using the "xlink:href" attribute due to mishandling of the xlink namespace by the sanitizer. | CVSS3: 6.1 | 0% Низкий | около 6 лет назад | |
GHSA-8rc5-hx3v-2jg7 Sanitizer bypass in svg-sanitizer | CVSS3: 6.1 | 0% Низкий | почти 6 лет назад |
Уязвимостей на страницу
20