Логотип exploitDog
bind:"GHSA-vvgc-356p-c3xw" OR bind:"CVE-2025-22872"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-vvgc-356p-c3xw" OR bind:"CVE-2025-22872"

Количество 14

Количество 14

github логотип

GHSA-vvgc-356p-c3xw

4 месяца назад

golang.org/x/net vulnerable to Cross-site Scripting

EPSS: Низкий
ubuntu логотип

CVE-2025-22872

4 месяца назад

The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When directly using Tokenizer, this can result in such tags incorrectly being marked as self-closing, and when using the Parse functions, this can result in content following such tags as being placed in the wrong scope during DOM construction, but only when tags are in foreign content (e.g. <math>, <svg>, etc contexts).

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2025-22872

4 месяца назад

The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When directly using Tokenizer, this can result in such tags incorrectly being marked as self-closing, and when using the Parse functions, this can result in content following such tags as being placed in the wrong scope during DOM construction, but only when tags are in foreign content (e.g. <math>, <svg>, etc contexts).

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2025-22872

4 месяца назад

The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When directly using Tokenizer, this can result in such tags incorrectly being marked as self-closing, and when using the Parse functions, this can result in content following such tags as being placed in the wrong scope during DOM construction, but only when tags are in foreign content (e.g. <math>, <svg>, etc contexts).

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2025-22872

3 месяца назад

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-22872

4 месяца назад

The tokenizer incorrectly interprets tags with unquoted attribute valu ...

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:02121-1

около 1 месяца назад

Security update for helm

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01945-1

около 2 месяцев назад

Security update for kubernetes-old

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01941-1

около 2 месяцев назад

Security update for kubernetes1.24

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01940-1

около 2 месяцев назад

Security update for kubernetes1.23

EPSS: Низкий
redos логотип

ROS-20250630-09

около 1 месяца назад

Множественные уязвимости consul

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01991-1

около 2 месяцев назад

Security update for grafana

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01989-1

около 2 месяцев назад

Security update for Multi-Linux Manager Client Tools

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01987-1

около 2 месяцев назад

Security update for Multi-Linux Manager Client Tools

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-vvgc-356p-c3xw

golang.org/x/net vulnerable to Cross-site Scripting

0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2025-22872

The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When directly using Tokenizer, this can result in such tags incorrectly being marked as self-closing, and when using the Parse functions, this can result in content following such tags as being placed in the wrong scope during DOM construction, but only when tags are in foreign content (e.g. <math>, <svg>, etc contexts).

CVSS3: 6.5
0%
Низкий
4 месяца назад
redhat логотип
CVE-2025-22872

The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When directly using Tokenizer, this can result in such tags incorrectly being marked as self-closing, and when using the Parse functions, this can result in content following such tags as being placed in the wrong scope during DOM construction, but only when tags are in foreign content (e.g. <math>, <svg>, etc contexts).

CVSS3: 6.5
0%
Низкий
4 месяца назад
nvd логотип
CVE-2025-22872

The tokenizer incorrectly interprets tags with unquoted attribute values that end with a solidus character (/) as self-closing. When directly using Tokenizer, this can result in such tags incorrectly being marked as self-closing, and when using the Parse functions, this can result in content following such tags as being placed in the wrong scope during DOM construction, but only when tags are in foreign content (e.g. <math>, <svg>, etc contexts).

CVSS3: 6.5
0%
Низкий
4 месяца назад
msrc логотип
CVSS3: 6.5
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-22872

The tokenizer incorrectly interprets tags with unquoted attribute valu ...

CVSS3: 6.5
0%
Низкий
4 месяца назад
suse-cvrf логотип
SUSE-SU-2025:02121-1

Security update for helm

0%
Низкий
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2025:01945-1

Security update for kubernetes-old

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:01941-1

Security update for kubernetes1.24

0%
Низкий
около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:01940-1

Security update for kubernetes1.23

0%
Низкий
около 2 месяцев назад
redos логотип
ROS-20250630-09

Множественные уязвимости consul

CVSS3: 7.5
около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2025:01991-1

Security update for grafana

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:01989-1

Security update for Multi-Linux Manager Client Tools

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:01987-1

Security update for Multi-Linux Manager Client Tools

около 2 месяцев назад

Уязвимостей на страницу