PayPal Inc Braintree/sanitize-url 4.1.1 for Node.js

CPE Details

PayPal Inc Braintree/sanitize-url 4.1.1 for Node.js
4.1.1
2022-03-22
12h16 +00:00
2022-03-22
14h02 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:paypal:braintree\/sanitize-url:4.1.1:*:*:*:*:node.js:*:*

Informations

Vendor

paypal

Product

braintree\/sanitize-url

Version

4.1.1

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-48345 2023-02-24 00h00 +00:00 sanitize-url (aka @braintree/sanitize-url) before 6.0.2 allows XSS via HTML entities.
6.1
Medium
CVE-2021-23648 2022-03-16 15h45 +00:00 The package @braintree/sanitize-url before 6.0.0 are vulnerable to Cross-site Scripting (XSS) due to improper sanitization in sanitizeUrl function.
6.1
Medium