Количество 18
Количество 18
GHSA-7mr4-xjxg-34g6
Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities.
CVE-2026-32289
Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities.
CVE-2026-32289
Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities.
CVE-2026-32289
Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities.
CVE-2026-32289
JsBraceDepth Context Tracking Bugs (XSS) in html/template
CVE-2026-32289
Context was not properly tracked across template branches for JS templ ...
BDU:2026-07253
Уязвимость языка программирования Go, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю выполнить произвольный код
ROS-20260710-73-0033
Уязвимость mimir
ROS-20260430-73-0012
Уязвимость golang
openSUSE-SU-2026:20570-1
Security update for go1.25
SUSE-SU-2026:1581-1
Security update for go1.25-openssl
SUSE-SU-2026:1321-1
Security update for go1.25
openSUSE-SU-2026:20571-1
Security update for go1.26
SUSE-SU-2026:1580-1
Security update for go1.26-openssl
SUSE-SU-2026:1320-1
Security update for go1.26
openSUSE-SU-2026:20703-1
Security update for coredns
openSUSE-SU-2026:21254-1
Security update for go1.26-openssl
openSUSE-SU-2026:21319-1
Security update for go1.25-openssl
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-7mr4-xjxg-34g6 Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities. | CVSS3: 6.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-32289 Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities. | CVSS3: 6.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-32289 Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities. | CVSS3: 5.4 | 0% Низкий | 4 месяца назад | |
CVE-2026-32289 Context was not properly tracked across template branches for JS template literals, leading to possibly incorrect escaping of content when branches were used. Additionally template actions within JS template literals did not properly track the brace depth, leading to incorrect escaping being applied. These issues could cause actions within JS template literals to be incorrectly or improperly escaped, leading to XSS vulnerabilities. | CVSS3: 6.1 | 0% Низкий | 4 месяца назад | |
CVE-2026-32289 JsBraceDepth Context Tracking Bugs (XSS) in html/template | 0% Низкий | 4 месяца назад | ||
CVE-2026-32289 Context was not properly tracked across template branches for JS templ ... | CVSS3: 6.1 | 0% Низкий | 4 месяца назад | |
BDU:2026-07253 Уязвимость языка программирования Go, связанная с непринятием мер по защите структуры веб-страницы, позволяющая нарушителю выполнить произвольный код | CVSS3: 6.1 | 0% Низкий | 4 месяца назад | |
ROS-20260710-73-0033 Уязвимость mimir | CVSS3: 6.1 | 0% Низкий | 21 день назад | |
ROS-20260430-73-0012 Уязвимость golang | CVSS3: 6.1 | 0% Низкий | 3 месяца назад | |
openSUSE-SU-2026:20570-1 Security update for go1.25 | 3 месяца назад | |||
SUSE-SU-2026:1581-1 Security update for go1.25-openssl | 3 месяца назад | |||
SUSE-SU-2026:1321-1 Security update for go1.25 | 4 месяца назад | |||
openSUSE-SU-2026:20571-1 Security update for go1.26 | 3 месяца назад | |||
SUSE-SU-2026:1580-1 Security update for go1.26-openssl | 3 месяца назад | |||
SUSE-SU-2026:1320-1 Security update for go1.26 | 4 месяца назад | |||
openSUSE-SU-2026:20703-1 Security update for coredns | 3 месяца назад | |||
openSUSE-SU-2026:21254-1 Security update for go1.26-openssl | 23 дня назад | |||
openSUSE-SU-2026:21319-1 Security update for go1.25-openssl | 18 дней назад |
Уязвимостей на страницу