Логотип exploitDog
bind:CVE-2020-15119
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-15119

Количество 2

Количество 2

nvd логотип

CVE-2020-15119

больше 5 лет назад

In auth0-lock versions before and including 11.25.1, dangerouslySetInnerHTML is used to update the DOM. When dangerouslySetInnerHTML is used, the application and its users might be exposed to cross-site scripting (XSS) attacks.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-6gg3-pmm7-97xc

больше 5 лет назад

DOM-based XSS in auth0-lock

CVSS3: 6.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2020-15119

In auth0-lock versions before and including 11.25.1, dangerouslySetInnerHTML is used to update the DOM. When dangerouslySetInnerHTML is used, the application and its users might be exposed to cross-site scripting (XSS) attacks.

CVSS3: 6.4
0%
Низкий
больше 5 лет назад
github логотип
GHSA-6gg3-pmm7-97xc

DOM-based XSS in auth0-lock

CVSS3: 6.4
0%
Низкий
больше 5 лет назад

Уязвимостей на страницу