Количество 23
Количество 23
CVE-2023-39319
The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack.
CVE-2023-39319
The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack.
CVE-2023-39319
The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack.
CVE-2023-39319
Improper handling of special tags within script contexts in html/template
CVE-2023-39319
The html/template package does not apply the proper rules for handling ...
GHSA-vv9m-32rr-3g55
The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack.
BDU:2024-07763
Уязвимость пакета html/template языка программирования Go, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS)
SUSE-SU-2023:3700-1
Security update for go1.20
SUSE-SU-2023:3840-1
Security update for go1.20-openssl
SUSE-SU-2023:3701-1
Security update for go1.21
ELSA-2023-7766
ELSA-2023-7766: containernetworking-plugins security update (MODERATE)
ELSA-2023-7765
ELSA-2023-7765: podman security update (MODERATE)
ELSA-2023-7764
ELSA-2023-7764: buildah security update (MODERATE)
ELSA-2023-7762
ELSA-2023-7762: skopeo security update (MODERATE)
ROS-20241001-02
Множественные уязвимости golang
RLSA-2024:0121
Moderate: container-tools:4.0 security update
ELSA-2024-0121
ELSA-2024-0121: container-tools:4.0 security update (MODERATE)
ALT-PU-2023-5464
ALT-PU-2023-5464: package `golang` update to version 1.20.8-alt1
ALT-PU-2023-5463
ALT-PU-2023-5463: package `golang` update to version 1.21.1-alt1
SUSE-SU-2023:4469-1
Security update for go1.21-openssl
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2023-39319 The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack. | CVSS3: 6.1 | 1% Низкий | около 3 лет назад | |
CVE-2023-39319 The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack. | CVSS3: 6.1 | 1% Низкий | около 3 лет назад | |
CVE-2023-39319 The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack. | CVSS3: 6.1 | 1% Низкий | около 3 лет назад | |
CVE-2023-39319 Improper handling of special tags within script contexts in html/template | CVSS3: 6.1 | 1% Низкий | около 1 года назад | |
CVE-2023-39319 The html/template package does not apply the proper rules for handling ... | CVSS3: 6.1 | 1% Низкий | около 3 лет назад | |
GHSA-vv9m-32rr-3g55 The html/template package does not apply the proper rules for handling occurrences of "<script", "<!--", and "</script" within JS literals in <script> contexts. This may cause the template parser to improperly consider script contexts to be terminated early, causing actions to be improperly escaped. This could be leveraged to perform an XSS attack. | CVSS3: 6.1 | 1% Низкий | около 3 лет назад | |
BDU:2024-07763 Уязвимость пакета html/template языка программирования Go, позволяющая нарушителю провести атаку межсайтового скриптинга (XSS) | CVSS3: 6.1 | 1% Низкий | около 3 лет назад | |
SUSE-SU-2023:3700-1 Security update for go1.20 | около 3 лет назад | |||
SUSE-SU-2023:3840-1 Security update for go1.20-openssl | около 3 лет назад | |||
SUSE-SU-2023:3701-1 Security update for go1.21 | около 3 лет назад | |||
ELSA-2023-7766 ELSA-2023-7766: containernetworking-plugins security update (MODERATE) | почти 3 года назад | |||
ELSA-2023-7765 ELSA-2023-7765: podman security update (MODERATE) | почти 3 года назад | |||
ELSA-2023-7764 ELSA-2023-7764: buildah security update (MODERATE) | почти 3 года назад | |||
ELSA-2023-7762 ELSA-2023-7762: skopeo security update (MODERATE) | почти 3 года назад | |||
ROS-20241001-02 Множественные уязвимости golang | CVSS3: 8.8 | почти 2 года назад | ||
RLSA-2024:0121 Moderate: container-tools:4.0 security update | больше 1 года назад | |||
ELSA-2024-0121 ELSA-2024-0121: container-tools:4.0 security update (MODERATE) | больше 2 лет назад | |||
ALT-PU-2023-5464 ALT-PU-2023-5464: package `golang` update to version 1.20.8-alt1 | CVSS3: 9.8 | около 3 лет назад | ||
ALT-PU-2023-5463 ALT-PU-2023-5463: package `golang` update to version 1.21.1-alt1 | CVSS3: 9.8 | около 3 лет назад | ||
SUSE-SU-2023:4469-1 Security update for go1.21-openssl | почти 3 года назад |
Уязвимостей на страницу