You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
mend-bolt-for-githubbot
changed the title
WS-2017-0116 Medium Severity Vulnerability detected by WhiteSource
WS-2017-0116 (Medium) detected in angular-1.3.19.tgz
Jan 7, 2021
WS-2017-0116 - Medium Severity Vulnerability
HTML enhanced for web apps
Library home page: https://registry.npmjs.org/angular/-/angular-1.3.19.tgz
Path to dependency file: example-javascript-yarn/package.json
Path to vulnerable library: example-javascript-yarn/node_modules/angular/package.json
Dependency Hierarchy:
The use element can reference external svg's (same origin) and can include xlink javascript urls or foreign object that can execute xss.
Publish Date: 2015-12-05
URL: WS-2017-0116
Base Score Metrics:
Type: Upgrade version
Origin: angular/angular.js#13453
Release Date: 2015-12-05
Fix Resolution: angular - 1.5.0
The text was updated successfully, but these errors were encountered: