Description
Improper sanitization of the value of the ‘href’ and ‘xlink:href’ attributes in ‘
Recommendation
No fix is available yet. Followings are affected versions:
- >= 1.3.1, <= 1.8.3
References
Could your website be exposed too?
SmartScanner can check your website for AngularJS Incomplete Filtering of Special Elements vulnerability and gives you actionable findings to investigate.
Start a free scanRelated Issues
- Validator is Vulnerable to Incomplete Filtering of One or More Instances of Special Elements - CVE-2025-12758
- AngularJS improperly sanitizes SVG elements - CVE-2025-0716
- Nuxt MDC has an XSS vulnerability in markdown rendering that bypasses HTML filtering - CVE-2025-54075
- @octokit/request-error has a Regular Expression in index that Leads to ReDoS Vulnerability Due to Catastrophic Backtrack - CVE-2025-25289


