Количество 4
Количество 4
CVE-2014-3743
Multiple cross-site scripting (XSS) vulnerabilities in the Marked module before 0.3.1 for Node.js allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) gfm codeblocks (language) or (2) javascript url's. sanitize: true Even if this option is set, marked is vulnerable to content injection in multiple locations if untrusted user input is allowed to be provided into marked and that output is passed to the browser. Injection is possible in two locations * gfm codeblocks (language) * javascript url's
CVE-2014-3743
Multiple cross-site scripting (XSS) vulnerabilities in the Marked module before 0.3.1 for Node.js allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) gfm codeblocks (language) or (2) javascript url's.
CVE-2014-3743
Multiple cross-site scripting (XSS) vulnerabilities in the Marked modu ...
GHSA-9cw2-jqp5-7x39
Multiple Content Injection Vulnerabilities in marked
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2014-3743 Multiple cross-site scripting (XSS) vulnerabilities in the Marked module before 0.3.1 for Node.js allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) gfm codeblocks (language) or (2) javascript url's. sanitize: true Even if this option is set, marked is vulnerable to content injection in multiple locations if untrusted user input is allowed to be provided into marked and that output is passed to the browser. Injection is possible in two locations * gfm codeblocks (language) * javascript url's | CVSS3: 6.1 | 1% Низкий | около 6 лет назад | |
CVE-2014-3743 Multiple cross-site scripting (XSS) vulnerabilities in the Marked module before 0.3.1 for Node.js allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) gfm codeblocks (language) or (2) javascript url's. | CVSS3: 6.1 | 1% Низкий | около 6 лет назад | |
CVE-2014-3743 Multiple cross-site scripting (XSS) vulnerabilities in the Marked modu ... | CVSS3: 6.1 | 1% Низкий | около 6 лет назад | |
GHSA-9cw2-jqp5-7x39 Multiple Content Injection Vulnerabilities in marked | CVSS3: 6.1 | 1% Низкий | больше 5 лет назад |
Уязвимостей на страницу