Логотип exploitDog
bind:CVE-2024-21501
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-21501

Количество 5

Количество 5

ubuntu логотип

CVE-2024-21501

почти 2 года назад

Versions of the package sanitize-html before 2.12.1 are vulnerable to Information Exposure when used on the backend and with the style attribute allowed, allowing enumeration of files in the system (including project dependencies). An attacker could exploit this vulnerability to gather details about the file system structure and dependencies of the targeted server.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2024-21501

почти 2 года назад

Versions of the package sanitize-html before 2.12.1 are vulnerable to Information Exposure when used on the backend and with the style attribute allowed, allowing enumeration of files in the system (including project dependencies). An attacker could exploit this vulnerability to gather details about the file system structure and dependencies of the targeted server.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2024-21501

почти 2 года назад

Versions of the package sanitize-html before 2.12.1 are vulnerable to Information Exposure when used on the backend and with the style attribute allowed, allowing enumeration of files in the system (including project dependencies). An attacker could exploit this vulnerability to gather details about the file system structure and dependencies of the targeted server.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2024-21501

почти 2 года назад

Versions of the package sanitize-html before 2.12.1 are vulnerable to ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-rm97-x556-q36h

почти 2 года назад

sanitize-html Information Exposure vulnerability

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-21501

Versions of the package sanitize-html before 2.12.1 are vulnerable to Information Exposure when used on the backend and with the style attribute allowed, allowing enumeration of files in the system (including project dependencies). An attacker could exploit this vulnerability to gather details about the file system structure and dependencies of the targeted server.

CVSS3: 5.3
1%
Низкий
почти 2 года назад
redhat логотип
CVE-2024-21501

Versions of the package sanitize-html before 2.12.1 are vulnerable to Information Exposure when used on the backend and with the style attribute allowed, allowing enumeration of files in the system (including project dependencies). An attacker could exploit this vulnerability to gather details about the file system structure and dependencies of the targeted server.

CVSS3: 5.3
1%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-21501

Versions of the package sanitize-html before 2.12.1 are vulnerable to Information Exposure when used on the backend and with the style attribute allowed, allowing enumeration of files in the system (including project dependencies). An attacker could exploit this vulnerability to gather details about the file system structure and dependencies of the targeted server.

CVSS3: 5.3
1%
Низкий
почти 2 года назад
debian логотип
CVE-2024-21501

Versions of the package sanitize-html before 2.12.1 are vulnerable to ...

CVSS3: 5.3
1%
Низкий
почти 2 года назад
github логотип
GHSA-rm97-x556-q36h

sanitize-html Information Exposure vulnerability

CVSS3: 5.3
1%
Низкий
почти 2 года назад

Уязвимостей на страницу