6.1
CVSSv3

CVE-2019-14863

Published: 02/01/2020 Updated: 09/01/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

There is a vulnerability in all angular versions prior to 1.5.0-beta.0, where after escaping the context of the web application, the web application delivers data to its users along with other trusted dynamic content, without validating it.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

angularjs angular.js

redhat decision manager 7.0

redhat process automation 7.0

Vendor Advisories

Debian Bug report logs - #942833 CVE-2019-14863 Package: src:angularjs; Maintainer for src:angularjs is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Tue, 22 Oct 2019 08:15:01 UTC Severity: important Tags: security Reply or subscribe to this bug Toggle usel ...
Synopsis Important: Red Hat Decision Manager 751 Security Update Type/Severity Security Advisory: Important Topic An update is now available for Red Hat Decision ManagerRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scoring System (CVSS) ba ...
Synopsis Important: Red Hat Process Automation Manager 751 Security Update Type/Severity Security Advisory: Important Topic An update is now available for Red Hat Process Automation ManagerRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability Scor ...