Количество 3
Количество 3
CVE-2026-34405
Nuxt OG Image generates OG Images with Vue templates in Nuxt. Prior to version 6.2.5, the image‑generation component by the URI: /_og/d/ (and, in older versions, /og-image/) contains a vulnerability that allows injection of arbitrary attributes into the HTML page body. This issue has been patched in version 6.2.5.
GHSA-mg36-wvcr-m75h
Nuxt OG Image is vulnerable to reflected XSS via query parameter injection into HTML attributes
BDU:2026-05816
Уязвимость модуля генерации Open Graph (OG) изображений Nuxt OG Image фреймворка для создания веб-приложений и сайтов Nuxt.js, позволяющая нарушителю выполнить произвольный код
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-34405 Nuxt OG Image generates OG Images with Vue templates in Nuxt. Prior to version 6.2.5, the image‑generation component by the URI: /_og/d/ (and, in older versions, /og-image/) contains a vulnerability that allows injection of arbitrary attributes into the HTML page body. This issue has been patched in version 6.2.5. | CVSS3: 6.1 | 0% Низкий | 4 месяца назад | |
GHSA-mg36-wvcr-m75h Nuxt OG Image is vulnerable to reflected XSS via query parameter injection into HTML attributes | CVSS3: 6.1 | 0% Низкий | 4 месяца назад | |
BDU:2026-05816 Уязвимость модуля генерации Open Graph (OG) изображений Nuxt OG Image фреймворка для создания веб-приложений и сайтов Nuxt.js, позволяющая нарушителю выполнить произвольный код | CVSS3: 5.8 | 0% Низкий | 5 месяцев назад |
Уязвимостей на страницу