Логотип exploitDog
bind:CVE-2022-23515
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-23515

Количество 6

Количество 6

ubuntu логотип

CVE-2022-23515

больше 2 лет назад

Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Loofah >= 2.1.0, < 2.19.1 is vulnerable to cross-site scripting via the image/svg+xml media type in data URIs. This issue is patched in version 2.19.1.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2022-23515

больше 2 лет назад

Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Loofah >= 2.1.0, < 2.19.1 is vulnerable to cross-site scripting via the image/svg+xml media type in data URIs. This issue is patched in version 2.19.1.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2022-23515

больше 2 лет назад

Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Loofah >= 2.1.0, < 2.19.1 is vulnerable to cross-site scripting via the image/svg+xml media type in data URIs. This issue is patched in version 2.19.1.

CVSS3: 6.1
EPSS: Низкий
debian логотип

CVE-2022-23515

больше 2 лет назад

Loofah is a general library for manipulating and transforming HTML/XML ...

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-228g-948r-83gx

больше 2 лет назад

Improper neutralization of data URIs may allow XSS in Loofah

CVSS3: 6.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:1657-1

около 2 лет назад

Security update for rubygem-loofah

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-23515

Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Loofah >= 2.1.0, < 2.19.1 is vulnerable to cross-site scripting via the image/svg+xml media type in data URIs. This issue is patched in version 2.19.1.

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
redhat логотип
CVE-2022-23515

Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Loofah >= 2.1.0, < 2.19.1 is vulnerable to cross-site scripting via the image/svg+xml media type in data URIs. This issue is patched in version 2.19.1.

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2022-23515

Loofah is a general library for manipulating and transforming HTML/XML documents and fragments, built on top of Nokogiri. Loofah >= 2.1.0, < 2.19.1 is vulnerable to cross-site scripting via the image/svg+xml media type in data URIs. This issue is patched in version 2.19.1.

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2022-23515

Loofah is a general library for manipulating and transforming HTML/XML ...

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-228g-948r-83gx

Improper neutralization of data URIs may allow XSS in Loofah

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:1657-1

Security update for rubygem-loofah

около 2 лет назад

Уязвимостей на страницу