A vulnerability was found in Angular up to 11.0.4/11.1.0-next.2. It has been classified as problematic. Affected is the handling of comments. The manipulation leads to cross site scripting. It is possible to launch the attack remotely but it might require an authentication first. Upgrading to version 11.0.5 and 11.1.0-next.3 is able to address this issue. The name of the patch is ba8da742e3b243e8f43d4c63aa842b44e14f2b09. It is recommended to upgrade the affected component.
CVSS Details
- CVSS 3.1 Base Score: 3.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade ceph-mds-debuginfoUpgrade python3-radosUpgrade cephadm-ansibleUpgrade libcephfs2-debuginfoUpgrade python3-cephfs-debuginfoUpgrade ceph-common-debuginfoUpgrade ceph-immutable-object-cache-debuginfoUpgrade ceph-immutable-object-cacheUpgrade ceph-exporter-debuginfoUpgrade cephfs-mirror-debuginfoUpgrade rbd-mirror-debuginfoUpgrade ceph-fuseUpgrade python3-ceph-commonUpgrade python3-rbd-debuginfoUpgrade libradosstriper1Upgrade cephfs-topUpgrade rbd-fuse-debuginfoUpgrade ceph-osd-debuginfoUpgrade librbd-develUpgrade ansible-collection-ansible-posixUpgrade ceph-radosgw-debuginfoUpgrade cephadmUpgrade rbd-nbd-debuginfoUpgrade ceph-mon-debuginfoUpgrade rbd-nbdUpgrade ceph-mgr-debuginfoUpgrade python3-cephfsUpgrade libradosstriper1-debuginfoUpgrade ceph-mibUpgrade ceph-selinuxUpgrade librgw-develUpgrade ceph-fuse-debuginfoUpgrade librgw2Upgrade libcephfs-develUpgrade libcephsqlite-debuginfoUpgrade libcephfs2Upgrade ceph-debugsourceUpgrade python3-rbdUpgrade ceph-debuginfoUpgrade ceph-baseUpgrade python3-rados-debuginfoUpgrade python3-ceph-argparseUpgrade librados-develUpgrade ceph-commonUpgrade librados-devel-debuginfoUpgrade python3-rgwUpgrade librgw2-debuginfoUpgrade ceph-test-debuginfoUpgrade python3-rgw-debuginfoUpgrade ceph-base-debuginfoUpgrade libradospp-develUpgrade ceph-resource-agents | Jun 16, 2023 | May 26, 2022 |
| Redhat_linux | — | Upgrade python3-cephfsUpgrade python3-rgwUpgrade python3-cephfs-debuginfoUpgrade ceph-osd-debuginfoUpgrade libradosstriper1Upgrade cephfs-topUpgrade ceph-mgr-debuginfoUpgrade ceph-radosgw-debuginfoUpgrade ceph-selinuxUpgrade cephadmUpgrade ceph-baseUpgrade rbd-mirror-debuginfoUpgrade python3-rados-debuginfoUpgrade librgw2Upgrade libradospp-develUpgrade ceph-mon-debuginfoUpgrade ceph-exporter-debuginfoUpgrade ceph-mibUpgrade python3-ceph-argparseUpgrade python3-rgw-debuginfoUpgrade librbd-develNo solution existsUpgrade ceph-base-debuginfoUpgrade ceph-resource-agentsUpgrade ceph-debugsourceUpgrade ceph-test-debuginfoUpgrade python3-rbdUpgrade ceph-common-debuginfoUpgrade cephadm-ansibleUpgrade ceph-fuseUpgrade ceph-commonUpgrade ceph-debuginfoUpgrade libcephfs-develUpgrade cephfs-mirror-debuginfoUpgrade rbd-nbd-debuginfoUpgrade librados-develUpgrade ceph-fuse-debuginfoUpgrade libcephfs2Upgrade librgw-develUpgrade python3-rbd-debuginfoUpgrade ceph-mds-debuginfoUpgrade ansible-collection-ansible-posixUpgrade rbd-nbdUpgrade libcephsqlite-debuginfoUpgrade python3-radosUpgrade python3-ceph-commonUpgrade libcephfs2-debuginfoUpgrade ceph-immutable-object-cacheUpgrade ceph-immutable-object-cache-debuginfoUpgrade librgw2-debuginfoUpgrade librados-devel-debuginfoUpgrade libradosstriper1-debuginfoUpgrade rbd-fuse-debuginfo | Jun 16, 2023 | May 26, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub