Логотип exploitDog
bind:CVE-2018-6333
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-6333

Количество 2

Количество 2

nvd логотип

CVE-2018-6333

около 7 лет назад

The hhvm-attach deep link handler in Nuclide did not properly sanitize the provided hostname parameter when rendering. As a result, a malicious URL could be used to render HTML and other content inside of the editor's context, which could potentially be chained to lead to code execution. This issue affected Nuclide prior to v0.290.0.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-r83x-wj75-v89r

больше 3 лет назад

Nuclide Improper Input Validation

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-6333

The hhvm-attach deep link handler in Nuclide did not properly sanitize the provided hostname parameter when rendering. As a result, a malicious URL could be used to render HTML and other content inside of the editor's context, which could potentially be chained to lead to code execution. This issue affected Nuclide prior to v0.290.0.

CVSS3: 9.8
1%
Низкий
около 7 лет назад
github логотип
GHSA-r83x-wj75-v89r

Nuclide Improper Input Validation

CVSS3: 9.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу