CVEs (2)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Html Pages Project 1Html Pages Nov 21, 2024 Feb 1, 2019 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A XSS vulnerability was found in html-page <=2.1.1 that allows malicious Javascript code to be executed in the user's browser due to the absence of sanitization of the paths before rendering. |
1Html Pages Project 1Html Pages Nov 21, 2024 May 29, 2018 N/A· v4 9.8 CRITICAL· v3 5.0 MEDIUM· v2 The html-pages node module contains a path traversal vulnerabilities that allows an attacker to read any file from the server with cURL. |