Skip to content

Commit 09984e7

Browse files
1 parent 27f77d8 commit 09984e7

File tree

3 files changed

+62
-22
lines changed

3 files changed

+62
-22
lines changed

advisories/github-reviewed/2019/11/GHSA-89mq-4x47-5v83/GHSA-89mq-4x47-5v83.json

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -1,13 +1,13 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-89mq-4x47-5v83",
4-
"modified": "2022-01-04T19:51:20Z",
4+
"modified": "2025-11-20T19:29:58Z",
55
"published": "2019-11-20T15:29:43Z",
66
"aliases": [
77
"CVE-2019-10768"
88
],
9-
"summary": "Prototype Pollution in angular",
10-
"details": "Versions of `angular ` prior to 1.7.9 are vulnerable to prototype pollution. The deprecated API function `merge()` does not restrict the modification of an Object's prototype in the , which may allow an attacker to add or modify an existing property that will exist on all objects.\n\n\n\n\n## Recommendation\n\nUpgrade to version 1.7.9 or later. The function was already deprecated and upgrades are not expected to break functionality.",
9+
"summary": "angular Prototype Pollution vulnerability",
10+
"details": "Versions of `angular ` prior to 1.7.9 are vulnerable to prototype pollution. The deprecated API function `merge()` does not restrict the modification of an Object's prototype in the , which may allow an attacker to add or modify an existing property that will exist on all objects.\n\n## Recommendation\n\nUpgrade to version 1.7.9 or later. The function was already deprecated and upgrades are not expected to break functionality.",
1111
"severity": [
1212
{
1313
"type": "CVSS_V3",
@@ -54,15 +54,15 @@
5454
},
5555
{
5656
"type": "WEB",
57-
"url": "https://lists.apache.org/thread.html/rca37935d661f4689cb4119f1b3b224413b22be161b678e6e6ce0c69b@%3Ccommits.nifi.apache.org%3E"
57+
"url": "https://lists.apache.org/thread.html/rca37935d661f4689cb4119f1b3b224413b22be161b678e6e6ce0c69b%40%3Ccommits.nifi.apache.org%3E"
5858
},
5959
{
6060
"type": "WEB",
61-
"url": "https://snyk.io/vuln/SNYK-JS-ANGULAR-534884"
61+
"url": "https://lists.apache.org/thread.html/rca37935d661f4689cb4119f1b3b224413b22be161b678e6e6ce0c69b@%3Ccommits.nifi.apache.org%3E"
6262
},
6363
{
6464
"type": "WEB",
65-
"url": "https://www.npmjs.com/advisories/1343"
65+
"url": "https://snyk.io/vuln/SNYK-JS-ANGULAR-534884"
6666
}
6767
],
6868
"database_specific": {

advisories/github-reviewed/2020/02/GHSA-r5fx-8r73-v86c/GHSA-r5fx-8r73-v86c.json

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-r5fx-8r73-v86c",
4-
"modified": "2022-08-02T16:22:26Z",
4+
"modified": "2025-11-20T19:30:06Z",
55
"published": "2020-02-14T23:08:49Z",
66
"aliases": [
77
"CVE-2019-14863"

advisories/github-reviewed/2020/06/GHSA-mhp6-pxh8-r675/GHSA-mhp6-pxh8-r675.json

Lines changed: 55 additions & 15 deletions
Original file line numberDiff line numberDiff line change
@@ -1,12 +1,12 @@
11
{
22
"schema_version": "1.4.0",
33
"id": "GHSA-mhp6-pxh8-r675",
4-
"modified": "2023-09-08T20:50:35Z",
4+
"modified": "2025-11-20T19:31:06Z",
55
"published": "2020-06-18T14:19:58Z",
66
"aliases": [
77
"CVE-2020-7676"
88
],
9-
"summary": "Cross site scripting in Angular",
9+
"summary": "Angular vulnerable to Cross-site Scripting",
1010
"details": "angular.js prior to 1.8.0 allows cross site scripting. The regex-based input HTML replacement may turn sanitized code into unsanitized one. Wrapping `<option>` elements in `<select>` ones changes parsing behavior, leading to possibly unsanitizing code.",
1111
"severity": [
1212
{
@@ -49,52 +49,92 @@
4949
"url": "https://github.com/angular/angular.js/commit/2df43c07779137d1bddf7f3b282a1287a8634acd"
5050
},
5151
{
52-
"type": "PACKAGE",
53-
"url": "https://github.com/angular/angular.js"
52+
"type": "WEB",
53+
"url": "https://snyk.io/vuln/SNYK-JS-ANGULAR-570058"
5454
},
5555
{
5656
"type": "WEB",
57-
"url": "https://lists.apache.org/thread.html/r198985c02829ba8285ed4f9b1de54a33b5f31b08bb38ac51fc86961b@%3Cozone-issues.hadoop.apache.org%3E"
57+
"url": "https://lists.apache.org/thread.html/rfa2b19d01d10a8637dc319a7d5994c3dbdb88c0a8f9a21533403577a@%3Cozone-issues.hadoop.apache.org%3E"
5858
},
5959
{
6060
"type": "WEB",
61-
"url": "https://lists.apache.org/thread.html/r3f05cfd587c774ea83c18e59eda9fa37fa9bbf3421484d4ee1017a20@%3Cozone-issues.hadoop.apache.org%3E"
61+
"url": "https://lists.apache.org/thread.html/rfa2b19d01d10a8637dc319a7d5994c3dbdb88c0a8f9a21533403577a%40%3Cozone-issues.hadoop.apache.org%3E"
6262
},
6363
{
6464
"type": "WEB",
65-
"url": "https://lists.apache.org/thread.html/r446c297cd6cda2bd7e345c9b0741d7f611df89902e5d515848c6f4b1@%3Cozone-issues.hadoop.apache.org%3E"
65+
"url": "https://lists.apache.org/thread.html/rda99599896c3667f2cc9e9d34c7b6ef5d2bbed1f4801e1d75a2b0679@%3Ccommits.nifi.apache.org%3E"
6666
},
6767
{
6868
"type": "WEB",
69-
"url": "https://lists.apache.org/thread.html/r455ebd83a1c69ae8fd897560534a079c70a483dbe1e75504f1ca499b@%3Cozone-issues.hadoop.apache.org%3E"
69+
"url": "https://lists.apache.org/thread.html/rda99599896c3667f2cc9e9d34c7b6ef5d2bbed1f4801e1d75a2b0679%40%3Ccommits.nifi.apache.org%3E"
7070
},
7171
{
7272
"type": "WEB",
73-
"url": "https://lists.apache.org/thread.html/r57383582dcad2305430321589dfaca6793f5174c55da6ce8d06fbf9b@%3Cozone-issues.hadoop.apache.org%3E"
73+
"url": "https://lists.apache.org/thread.html/rb6423268b25db0f800359986867648e11dbd38e133b9383e85067f02@%3Cozone-issues.hadoop.apache.org%3E"
7474
},
7575
{
7676
"type": "WEB",
77-
"url": "https://lists.apache.org/thread.html/r79e3feaaf87b81e80da0e17a579015f6dcb94c95551ced398d50c8d7@%3Cozone-issues.hadoop.apache.org%3E"
77+
"url": "https://lists.apache.org/thread.html/rb6423268b25db0f800359986867648e11dbd38e133b9383e85067f02%40%3Cozone-issues.hadoop.apache.org%3E"
7878
},
7979
{
8080
"type": "WEB",
8181
"url": "https://lists.apache.org/thread.html/r80f210a5f4833d59c5d3de17dd7312f9daba0765ec7d4052469f13f1@%3Cozone-commits.hadoop.apache.org%3E"
8282
},
8383
{
8484
"type": "WEB",
85-
"url": "https://lists.apache.org/thread.html/rb6423268b25db0f800359986867648e11dbd38e133b9383e85067f02@%3Cozone-issues.hadoop.apache.org%3E"
85+
"url": "https://lists.apache.org/thread.html/r80f210a5f4833d59c5d3de17dd7312f9daba0765ec7d4052469f13f1%40%3Cozone-commits.hadoop.apache.org%3E"
8686
},
8787
{
8888
"type": "WEB",
89-
"url": "https://lists.apache.org/thread.html/rda99599896c3667f2cc9e9d34c7b6ef5d2bbed1f4801e1d75a2b0679@%3Ccommits.nifi.apache.org%3E"
89+
"url": "https://lists.apache.org/thread.html/r79e3feaaf87b81e80da0e17a579015f6dcb94c95551ced398d50c8d7@%3Cozone-issues.hadoop.apache.org%3E"
9090
},
9191
{
9292
"type": "WEB",
93-
"url": "https://lists.apache.org/thread.html/rfa2b19d01d10a8637dc319a7d5994c3dbdb88c0a8f9a21533403577a@%3Cozone-issues.hadoop.apache.org%3E"
93+
"url": "https://lists.apache.org/thread.html/r79e3feaaf87b81e80da0e17a579015f6dcb94c95551ced398d50c8d7%40%3Cozone-issues.hadoop.apache.org%3E"
9494
},
9595
{
9696
"type": "WEB",
97-
"url": "https://snyk.io/vuln/SNYK-JS-ANGULAR-570058"
97+
"url": "https://lists.apache.org/thread.html/r57383582dcad2305430321589dfaca6793f5174c55da6ce8d06fbf9b@%3Cozone-issues.hadoop.apache.org%3E"
98+
},
99+
{
100+
"type": "WEB",
101+
"url": "https://lists.apache.org/thread.html/r57383582dcad2305430321589dfaca6793f5174c55da6ce8d06fbf9b%40%3Cozone-issues.hadoop.apache.org%3E"
102+
},
103+
{
104+
"type": "WEB",
105+
"url": "https://lists.apache.org/thread.html/r455ebd83a1c69ae8fd897560534a079c70a483dbe1e75504f1ca499b@%3Cozone-issues.hadoop.apache.org%3E"
106+
},
107+
{
108+
"type": "WEB",
109+
"url": "https://lists.apache.org/thread.html/r455ebd83a1c69ae8fd897560534a079c70a483dbe1e75504f1ca499b%40%3Cozone-issues.hadoop.apache.org%3E"
110+
},
111+
{
112+
"type": "WEB",
113+
"url": "https://lists.apache.org/thread.html/r446c297cd6cda2bd7e345c9b0741d7f611df89902e5d515848c6f4b1@%3Cozone-issues.hadoop.apache.org%3E"
114+
},
115+
{
116+
"type": "WEB",
117+
"url": "https://lists.apache.org/thread.html/r446c297cd6cda2bd7e345c9b0741d7f611df89902e5d515848c6f4b1%40%3Cozone-issues.hadoop.apache.org%3E"
118+
},
119+
{
120+
"type": "WEB",
121+
"url": "https://lists.apache.org/thread.html/r3f05cfd587c774ea83c18e59eda9fa37fa9bbf3421484d4ee1017a20@%3Cozone-issues.hadoop.apache.org%3E"
122+
},
123+
{
124+
"type": "WEB",
125+
"url": "https://lists.apache.org/thread.html/r3f05cfd587c774ea83c18e59eda9fa37fa9bbf3421484d4ee1017a20%40%3Cozone-issues.hadoop.apache.org%3E"
126+
},
127+
{
128+
"type": "WEB",
129+
"url": "https://lists.apache.org/thread.html/r198985c02829ba8285ed4f9b1de54a33b5f31b08bb38ac51fc86961b@%3Cozone-issues.hadoop.apache.org%3E"
130+
},
131+
{
132+
"type": "WEB",
133+
"url": "https://lists.apache.org/thread.html/r198985c02829ba8285ed4f9b1de54a33b5f31b08bb38ac51fc86961b%40%3Cozone-issues.hadoop.apache.org%3E"
134+
},
135+
{
136+
"type": "PACKAGE",
137+
"url": "https://github.com/angular/angular.js"
98138
}
99139
],
100140
"database_specific": {
@@ -104,6 +144,6 @@
104144
"severity": "MODERATE",
105145
"github_reviewed": true,
106146
"github_reviewed_at": "2020-06-18T14:09:41Z",
107-
"nvd_published_at": null
147+
"nvd_published_at": "2020-06-08T14:15:13Z"
108148
}
109149
}

0 commit comments

Comments
 (0)