Angularjs Angular 1.7.7 for Node.js

CPE Details

Angularjs Angular 1.7.7 for Node.js
1.7.7
2022-05-06
16h06 +00:00
2022-05-09
15h42 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:angularjs:angular:1.7.7:*:*:*:*:node.js:*:*

Informations

Vendor

angularjs

Product

angular

Version

1.7.7

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-26116 2023-03-30 05h00 +00:00 Versions of the package angular from 1.2.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the angular.copy() utility function due to the usage of an insecure regular expression. Exploiting this vulnerability is possible by a large carefully-crafted input, which can result in catastrophic backtracking.
5.3
Moyen
CVE-2023-26118 2023-03-30 05h00 +00:00 Versions of the package angular from 1.4.9 are vulnerable to Regular Expression Denial of Service (ReDoS) via the element due to the usage of an insecure regular expression in the input[url] functionality. Exploiting this vulnerability is possible by a large carefully-crafted input, which can result in catastrophic backtracking.
5.3
Moyen
CVE-2023-26117 2023-03-30 05h00 +00:00 Versions of the package angular from 1.0.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the $resource service due to the usage of an insecure regular expression. Exploiting this vulnerability is possible by a large carefully-crafted input, which can result in catastrophic backtracking.
5.3
Moyen
CVE-2022-25869 2022-07-15 20h02 +00:00 All versions of package angular are vulnerable to Cross-site Scripting (XSS) due to insecure page caching in the Internet Explorer browser, which allows interpolation of