← Back

CVE-2015-1866

nvd nist
Published: Sep 20, 2017Modified: May 13, 2026

JSON object

Loading...
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in Ember.js 1.10.x before 1.10.1 and 1.11.x before 1.11.2.

Affected (12)

Products: Emberjs: Ember.js
1 product
Ember.js
Configuration A
12 vulnerable
Vulnerable SoftwareAffected Versions
Emberjs
Version 1.10.0
Version 1.10.0 beta1
Version 1.10.0 beta2
Version 1.10.0 beta3
Version 1.10.0 beta4
Version 1.11.0
Version 1.11.0 beta1
Version 1.11.0 beta2
Version 1.11.0 beta3
Version 1.11.0 beta4
Version 1.11.0 beta5
Version 1.11.1

References (6)

Source: secalert@redhat.com
ExploitMailing ListMitigationPatchThird Party Advisory
Source: secalert@redhat.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitMailing ListMitigationPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry

Timeline

No history available yet.