CVE-2022-25873
18.09.2022, 15:15
The package vuetify from 2.0.0-beta.4 and before 2.6.10 are vulnerable to Cross-site Scripting (XSS) due to improper input sanitization in the 'eventName' function within the VCalendar component.
Vendor | Product | Version |
---|---|---|
vuetifyjs | vuetify | 2.0.1 ≤ 𝑥 < 2.6.10 |
vuetifyjs | vuetify | 2.0.0:beta4 |
vuetifyjs | vuetify | 2.0.0:beta5 |
vuetifyjs | vuetify | 2.0.0:beta6 |
vuetifyjs | vuetify | 2.0.0:beta7 |
vuetifyjs | vuetify | 2.0.0:beta8 |
vuetifyjs | vuetify | 2.0.0:beta9 |
𝑥
= Vulnerable software versions
References