Логотип exploitDog
bind:CVE-2024-11831
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-11831

Количество 6

Количество 6

ubuntu логотип

CVE-2024-11831

12 месяцев назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2024-11831

больше 1 года назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
EPSS: Низкий
nvd логотип

CVE-2024-11831

12 месяцев назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
EPSS: Низкий
msrc логотип

CVE-2024-11831

5 месяцев назад

Npm-serialize-javascript: cross-site scripting (xss) in serialize-javascript

EPSS: Низкий
debian логотип

CVE-2024-11831

12 месяцев назад

A flaw was found in npm-serialize-javascript. The vulnerability occurs ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-76p7-773f-r4q5

12 месяцев назад

Cross-site Scripting (XSS) in serialize-javascript

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
2%
Низкий
12 месяцев назад
redhat логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
2%
Низкий
больше 1 года назад
nvd логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs because the serialize-javascript module does not properly sanitize certain inputs, such as regex or other JavaScript object types, allowing an attacker to inject malicious code. This code could be executed when deserialized by a web browser, causing Cross-site scripting (XSS) attacks. This issue is critical in environments where serialized data is sent to web clients, potentially compromising the security of the website or web application using this package.

CVSS3: 5.4
2%
Низкий
12 месяцев назад
msrc логотип
CVE-2024-11831

Npm-serialize-javascript: cross-site scripting (xss) in serialize-javascript

2%
Низкий
5 месяцев назад
debian логотип
CVE-2024-11831

A flaw was found in npm-serialize-javascript. The vulnerability occurs ...

CVSS3: 5.4
2%
Низкий
12 месяцев назад
github логотип
GHSA-76p7-773f-r4q5

Cross-site Scripting (XSS) in serialize-javascript

CVSS3: 5.4
2%
Низкий
12 месяцев назад

Уязвимостей на страницу