VYPR

Vue.js

by Vue.js

Source repositories

CVEs (2)

  • CVE-2024-6783MedJul 23, 2024
    risk 0.31cvss 4.8epss 0.00

    A vulnerability has been discovered in Vue, that allows an attacker to perform XSS via prototype pollution. The attacker could change the prototype chain of some properties such as `Object.prototype.staticClass` or `Object.prototype.staticStyle` to execute arbitrary JavaScript…

  • CVE-2024-9506LowOct 15, 2024
    risk 0.24cvss 3.7epss 0.00

    Improper regular expression in Vue's parseHTML function leads to a potential regular expression denial of service vulnerability.