MEDIUMRubyGems

Ember.js Potential XSS Exploit When Binding `tagName` to User-Supplied Data

Ember.js Potential XSS Exploit When Binding `tagName` to User-Supplied Data

CVE-2013-4170Published 4 years agoUpdated 5 days agoSource: OSV

Affected packages

  • ember-sourcebefore 1.0.0.rc1.1

Exploit signal

Known exploited (CISA KEV)
No
EPSS score
EPSS percentile

EPSS is the probability a CVE is exploited in the wild; percentile is its rank among all CVEs.

Ember.js Potential XSS Exploit When Binding `tagName` to User-Supplied Data | HackTribune