Логотип exploitDog
bind:CVE-2026-27119
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-27119

Количество 3

Количество 3

redhat логотип

CVE-2026-27119

около 1 месяца назад

svelte performance oriented web framework. From 5.39.3, <=5.51.4, in certain circumstances, the server-side rendering output of an <option> element does not properly escape its content, potentially allowing HTML injection in the SSR output. Client-side rendering is not affected. This vulnerability is fixed in 5.51.5.

CVSS3: 5.6
EPSS: Низкий
nvd логотип

CVE-2026-27119

около 1 месяца назад

svelte performance oriented web framework. From 5.39.3, <=5.51.4, in certain circumstances, the server-side rendering output of an <option> element does not properly escape its content, potentially allowing HTML injection in the SSR output. Client-side rendering is not affected. This vulnerability is fixed in 5.51.5.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-h7h7-mm68-gmrc

около 1 месяца назад

Svelte affected by XSS in SSR `<option>` element

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2026-27119

svelte performance oriented web framework. From 5.39.3, <=5.51.4, in certain circumstances, the server-side rendering output of an <option> element does not properly escape its content, potentially allowing HTML injection in the SSR output. Client-side rendering is not affected. This vulnerability is fixed in 5.51.5.

CVSS3: 5.6
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-27119

svelte performance oriented web framework. From 5.39.3, <=5.51.4, in certain circumstances, the server-side rendering output of an <option> element does not properly escape its content, potentially allowing HTML injection in the SSR output. Client-side rendering is not affected. This vulnerability is fixed in 5.51.5.

CVSS3: 5.4
0%
Низкий
около 1 месяца назад
github логотип
GHSA-h7h7-mm68-gmrc

Svelte affected by XSS in SSR `<option>` element

0%
Низкий
около 1 месяца назад

Уязвимостей на страницу