Lucene search

K
osvGoogleOSV:CVE-2019-10756
HistoryOct 08, 2019 - 7:15 p.m.

CVE-2019-10756

2019-10-0819:15:09
Google
osv.dev
4

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.8%

It is possible to inject JavaScript within node-red-dashboard versions prior to version 2.17.0 due to the ui_notification node accepting raw HTML by default.

6.5 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

24.8%

Related for OSV:CVE-2019-10756