Vulnerabilities/

XSS via JQLite DOM manipulation functions in AngularJS

Severity:
Medium

Description

XSS may be triggered in AngularJS applications that sanitize user-controlled HTML snippets before passing them to JQLite methods like JQLite.prepend, JQLite.after, JQLite.append, JQLite.replaceWith, JQLite.append, new JQLite and angular.element.

Recommendation

Update the angular package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
angular
Anything's wrong? Let us know Last updated on January 09, 2023