Angular

Angular

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.02%
  • Veröffentlicht 10.01.2026 03:35:40
  • Zuletzt bearbeitet 13.01.2026 14:03:18

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.18, 20.3.16, 21.0.7, and 21.1.0-rc.0, a cross-site scripting (XSS) vulnerability has been ident...

  • EPSS 0.06%
  • Veröffentlicht 01.12.2025 22:35:59
  • Zuletzt bearbeitet 02.12.2025 17:16:29

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to 21.0.2, 20.3.15, and 19.2.17, A Stored Cross-Site Scripting (XSS) vulnerability has been identified in the An...

  • EPSS 0.08%
  • Veröffentlicht 26.11.2025 22:18:35
  • Zuletzt bearbeitet 01.12.2025 15:39:33

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Prior to versions 19.2.16, 20.3.14, and 21.0.1, there is a XSRF token leakage via protocol-relative URLs in angular HT...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 07.11.2025 00:00:00
  • Zuletzt bearbeitet 11.12.2025 23:42:37

A reflected cross-site scripting (XSS) vulnerability in CKeditor v46.1.0 & Angular v18.0.0 allows attackers to execute arbitrary code in the context of a user's browser via injecting a crafted payload.

  • EPSS 0.06%
  • Veröffentlicht 10.09.2025 20:13:56
  • Zuletzt bearbeitet 11.09.2025 17:14:10

Angular is a development platform for building mobile and desktop web applications using TypeScript/JavaScript and other languages. Angular uses a DI container (the "platform injector") to hold request-specific state during server-side rendering. For...

  • EPSS 1.34%
  • Veröffentlicht 26.05.2022 14:15:07
  • Zuletzt bearbeitet 20.11.2025 20:45:30

A vulnerability was found in Angular up to 11.0.4/11.1.0-next.2. It has been classified as problematic. Affected is the handling of comments. The manipulation leads to cross site scripting. It is possible to launch the attack remotely but it might re...