Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2024-11831

больше 1 года назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2024-11831

почти 2 года назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-11831

больше 1 года назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
EPSS: Низкий
msrc логотип

CVE-2024-11831

12 месяцев назад

Npm-serialize-javascript: cross-site scripting (xss) in serialize-javascript

EPSS: Низкий
debian логотип

CVE-2024-11831

больше 1 года назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-76p7-773f-r4q5

больше 1 года назад

Cross-site Scripting (XSS) in serialize-javascript

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
1%
Низкий
больше 1 года назад
redhat логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
1%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
1%
Низкий
больше 1 года назад
msrc логотип
CVE-2024-11831

Npm-serialize-javascript: cross-site scripting (xss) in serialize-javascript

1%
Низкий
12 месяцев назад
debian логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs ...

CVSS3: 5.4
1%
Низкий
больше 1 года назад
github логотип
GHSA-76p7-773f-r4q5

Cross-site Scripting (XSS) in serialize-javascript

CVSS3: 5.4
1%
Низкий
больше 1 года назад

Уязвимостей на страницу