angular-recaptcha icon indicating copy to clipboard operation
angular-recaptcha copied to clipboard

WS-2019-0367 (Medium) detected in angular-1.2.28.js

Open mend-for-github-com[bot] opened this issue 5 years ago • 0 comments

WS-2019-0367 - Medium Severity Vulnerability

Vulnerable Library - angular-1.2.28.js

AngularJS is an MVC framework for building web applications. The core features include HTML enhanced with custom component and data-binding capabilities, dependency injection and strong focus on simplicity, testability, maintainability and boiler-plate reduction.

Library home page: https://cdnjs.cloudflare.com/ajax/libs/angular.js/1.2.28/angular.js

Path to dependency file: /tmp/ws-scm/angular-recaptcha/demo/usage.html

Path to vulnerable library: /angular-recaptcha/demo/usage.html

Dependency Hierarchy:

  • :x: angular-1.2.28.js (Vulnerable Library)

Found in HEAD commit: d0c7317c1908251604c4e710c797fdf348d2bc46

Vulnerability Details

Prototype Pollution vulnerability found in Angular before 1.7.8.

Publish Date: 2019-11-07

URL: WS-2019-0367

CVSS 2 Score Details (5.0)

Base Score Metrics not available

Suggested Fix

Type: Upgrade version

Origin: https://github.com/angular/angular.js/commit/726f49dcf6c23106ddaf5cfd5e2e592841db743a

Release Date: 2019-11-07

Fix Resolution: angularjs - 1.7.8,1.7.8.1