Lucene search

K
prionPRIOn knowledge basePRION:CVE-2020-7676
HistoryJun 08, 2020 - 2:15 p.m.

Cross site scripting

2020-06-0814:15:00
PRIOn knowledge base
www.prio-n.com
6

6.1 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

51.9%

angular.js prior to 1.8.0 allows cross site scripting. The regex-based input HTML replacement may turn sanitized code into unsanitized one. Wrapping “<option>” elements in “<select>” ones changes parsing behavior, leading to possibly unsanitizing code.

CPENameOperatorVersion
angular.jslt1.8.0

References

6.1 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

51.9%