Publish GHSA-96g7-g7g9-jxw8

This commit is contained in:
advisory-database[bot]
2024-11-06 20:06:05 +00:00
parent e8e810739f
commit 1a729ca3d5
@@ -1,13 +1,13 @@
{
"schema_version": "1.4.0",
"id": "GHSA-96g7-g7g9-jxw8",
"modified": "2024-11-06T15:27:50Z",
"modified": "2024-11-06T20:04:41Z",
"published": "2024-11-06T15:27:50Z",
"aliases": [
"CVE-2024-51757"
],
"summary": "happy-dom allows for server side code to be executed by a <script> tag",
"details": "Fixes security vulnerability that allowed for server side code to be executed by a <script> tag\n\n### Impact\nConsumers of the NPM package `happy-dom`\n\n### Patches\nThe security vulnerability has been patched in v15.10.1\n\n### Workarounds\nNo easy workarounds to my knowledge\n\n### References\n[#1585](https://github.com/capricorn86/happy-dom/issues/1585)\n",
"details": "### Impact\nConsumers of the NPM package `happy-dom`\n\n### Patches\nThe security vulnerability has been patched in v15.10.1\n\n### Workarounds\nNo easy workarounds to my knowledge\n\n### References\n[#1585](https://github.com/capricorn86/happy-dom/issues/1585)\n",
"severity": [
{
"type": "CVSS_V4",
@@ -28,7 +28,7 @@
"introduced": "0"
},
{
"fixed": "15.10.1"
"fixed": "15.10.2"
}
]
}