CVE-2019-14863 PUBLISHED

There is a vulnerability in all angular versions before 1.5.0-beta.0, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynamic content, without validating it.

EPSS 0.10% · 26.8th percentile

Risk Scores

EPSS Score
0.10%
26.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSangular.js0, 1.2.28-1ubuntu2

Timeline

References

Open in Interactive Console →