MidnightBSD / security-advisory

A rest api to pull NVD security advisory data and formulate it for mport consumption
BSD 2-Clause "Simplified" License
1 stars 2 forks source link

CVE-2022-25869 (Medium) detected in angularjs-1.8.2.jar #151

Open mend-bolt-for-github[bot] opened 1 year ago

mend-bolt-for-github[bot] commented 1 year ago

CVE-2022-25869 - Medium Severity Vulnerability

Vulnerable Library - angularjs-1.8.2.jar

WebJar for AngularJS

Library home page: http://webjars.org

Path to dependency file: /pom.xml

Path to vulnerable library: /pom.xml

Dependency Hierarchy: - :x: **angularjs-1.8.2.jar** (Vulnerable Library)

Found in HEAD commit: ddbf982f54a01dcec86cab13425f8047dcb250f3

Found in base branch: master

Vulnerability Details

All versions of package angular are vulnerable to Cross-site Scripting (XSS) due to insecure page caching in the Internet Explorer browser, which allows interpolation of